PAN-OS - Block all unknown and unauthorized applications
This playbook is used to find and remove all rules that allow unauthorized applications communication as any. The playbook performs the following tasks: - Lists PAN-OS policy rules. - Checks for a rule that allows applications as any. - Deletes the rule based on user approval. - Commits the configuration.
- Pack
- MITRECoA
- Tasks
- 8
Inputs
- pre_post — Rules location. Can be 'pre-rulebase' or 'post-rulebase'. Mandatory for Panorama instances.
- device-group — The device group for which to return addresses (Panorama instances).
- tag — Tag for which to filter the rules.
Commands used
- pan-os-delete-rule
- pan-os-list-rules