-
Book Overview & Buying
-
Table Of Contents
Palo Alto Networks from Policy to Code
By :
In Chapter 3 and Chapter 4, we thoroughly examined all components of PAN-OS security policy rules. You can now go ahead and experiment with various types of objects and policy rules in a lab environment.
One of the things we learned about firewall security policy is that it is a flat structure—an ordered set of rules where the first match wins, and processing stops thereafter. Application Shift, covered in Chapter 1, certainly adds a layer of complexity; however, the policy remains the same flat structure, which seems challenging to adapt to an often somewhat structured organizational landscape.
The Panorama management appliance is designed to fill this gap, among many other valuable features. It enables centralized administration of all firewalls in a company, regardless of the size of the infrastructure. You will benefit from it even if you only have two to three firewalls, but its true value becomes evident in large networks with tens, hundreds...