Palo Alto prefers you to use Application Objects, which uses more than destination ports as its determining factor.
Instead, it uses application characteristics, signature conditions, and patterns to identify an application. In the event that you are attempting to provide access to a less common application, and an Application Object does not exist, you can either utilize service objects, in a more traditional setup, or you can define a custom Application Object
0 comments:
Post a Comment