Created the following and wanted to apply them to traffic from any user:
- Application Filter - want to block very high risk (level 5) apps. Default action is allow.
- Web Policy - select categories to block. Default Action is allow.
While the individual filters work, the question is how to properly apply them. I've tried applying them to separate firewall rules. Due to the default action required in each filter, this doesn't work as nothing makes it past the first rule; all traffic either gets allowed or blocked. I see you can apply an Application policy and a web filter in the same firewall rule, but which takes precedence?
Also, I created these filters/rules in Firewall Manager which is still ver 15 and pushed them out to devices running v16. There is no default action listed there. It only appears when logging onto the ver 16 devices. If I use a web or app filter does it now need to be applied only to the last rule?
This thread was automatically locked due to age.