Next-Generation Firewall
Configure Ethernet SGT Protection (SCM)
Table of Contents
Expand All
|
Collapse All
Next-Generation Firewall Docs
-
-
-
-
-
-
-
- PAN-OS 12.1
- PAN-OS 11.2
- PAN-OS 11.1
- PAN-OS 11.0 (EoL)
- PAN-OS 10.2
- PAN-OS 10.1
- PAN-OS 10.0 (EoL)
- PAN-OS 9.1 (EoL)
- PAN-OS 9.0 (EoL)
- PAN-OS 8.1 (EoL)
-
- PAN-OS 12.1
- PAN-OS 11.2
- PAN-OS 11.1
- PAN-OS 10.2
- PAN-OS 10.1
Configure Ethernet SGT Protection (SCM)
Procedure for configuring an Ethernet SGT protection profile in Strata Cloud
Manager.
- Log in to Strata Cloud Manager.Select ConfigurationNGFW and Prisma AccessSecurity ServicesDoS Protection and select the Configuration Scope where you want to create the Zone Protection profile.You can select a folder or firewall from your Folders or select Snippets to configure the Zone Protection profile in a snippet.Navigate to the Zone Protection Profiles and Add Profile.Enter a descriptive Name.(Optional) Enter a Description.Select Ethernet SGT.Add a Layer 2 SGT Exclude List by name.Enter one or more Tag values for the list.Range is 0 to 65,535. You can enter individual entries that are a contiguous range of tag values (for example, 100-500). You can add up to 100 (individual or range) tag entries in an Exclude List.Enable the Layer 2 SGT Exclude List.Layer 2 SGT Exclude Lists are enabled by default when added.You can modify an existing Zone Protection profile to disable a specific Layer 2 SGT Exclude List from enforcement.Save.