Hi, Comunity,
I'd like to ask your advice. Is there any instruction somewhere on how to do the best set of the rules on Firewall PAN to only allow traffic for global protect clients? The clients are on a normal network with DHCP. They have DNS from AD server. I want the client to get to the Internet only via Prisma Access/ This means that the client passes through a firewall that only allows access to Mobile Users Gateways.
I have found via API in Panorama/Cloud Plugin GW addresses, Portals and even IP ranges. I gradually prepared the rules. I still have a problem with this. After setting the rules it works. However, the next day it doesn't.
Thank you
... View more