Hello Everyone We are slowly migrating towards Palo Alto Traps (TMS) and are starting to apply "blocking" profiles instead of "report-only" profiles. We are doing this in different pilot groups per branch where we also remove the old antivirus solution. The new profiles where malware is actually blocked, are assigned to a static endpoint group. Since we need to migrate more than 300 clients before deploying it for all users, it takes a long time to add them one by one to this endpoint group. Using a dynamic group is unfortunately no option since the clients are all in the same domain, have the same naming convention as other branches and the IP's can also be similar to other branches when they're on the VPN. I'm interested how other administrators are dealing with this? Maybe a new feature in TMS to bulk import clients into a static group would also be nice?
... View more