Policy Optimizer - Manage Port Based Rules
This playbook migrates port-based rules to application-based allow rules to reduce the attack surface and safely enable applications on your network.
- Pack
- PANOSPolicyOptimizer
- Tasks
- 24
Inputs
- slack_user — Slack user to notify about port based rules.
- email_address — User email address to notify about port based rules.
- auto_commit — Specifies whether you want to auto-commit the configuration for the PAN-OS policy changes automatically (Yes/No).
Commands used
- pan-os-delete-rule
- pan-os-po-no-apps