PAN-OS & Panorama
Focus
Focus
Network Security

PAN-OS & Panorama

Table of Contents


PAN-OS & Panorama

Use tags to identify the purpose of a rule or configuration object and to help you better organize your rulebase.
  1. Create and apply tags.
    To tag a zone, you must create a tag with the same name as the zone. When the zone is attached in security rules, the tag color automatically displays as the background color against the zone name.
    1. Select
      Objects
      Tags
      .
    2. On Panorama or a multiple virtual system firewall, select the
      Device Group
      or the
      Virtual System
      to make the tag available.
    3. Add
      a tag and enter a
      Name
      to identify the tag or select a zone
      Name
      to create a tag for a zone. The maximum length is 127 characters.
    4. (
      Optional
      ) Select
      Shared
      to create the object in a shared location for access as a shared object in Panorama or for use across all virtual systems in a multiple virtual system firewall.
    5. (
      Optional
      ) Assign a
      Color
      from the 17 predefined colors. By default,
      Color
      is
      None
      .
    6. Click
      OK
      and
      Commit
      to save your changes.
  2. Apply tags to policy.
    1. Select
      Policies
      and any rulebase under it.
    2. Add
      a security rule and use the tagged objects you created in Step 1.
    3. Verify that the tags are in use.
  3. Apply tags to an address object, address group, service, or service group.
    1. Create the object.
      For example, to create a service group, select
      Objects
      Service Groups
      Add
      .
    2. Select a tag (
      Tags
      ) or enter a name in the field to create a new tag.
      To edit a tag or add color to the tag, see Modify Tags.

Modify Tags

  • Select
    Objects
    Tags
    to perform any of the following operations with tags:
    • Click the
      Name
      to edit the properties of a tag.
    • Select a tag in the table and
      Delete
      the tag from the firewall.
    • Clone
      a tag to duplicate it with the same properties. A numerical suffix is added to the tag name (for example, FTP-1).
    For information on working with tags, see View Rules by Tag Group.


Recommended For You