Cloud Management
Focus
Focus
Next-Generation Firewall

Cloud Management

Table of Contents


Cloud Management

Configure packet based attack protection on a cloud managed service to determine how the zone protection profile handles IP, IPv6, TCP, ICMP, or ICMPv6 packets.
  1. Create a Zone Protection profile and configure Packet-Based Attack Protection settings.
    1. Select ManageConfigurationNGFW and Prisma Access Security ServicesDoS Protection.
    2. Under Zone Protection Profiles, select an existing profile or Add Profile.
      If you add a new Zone Protection profile:
      • Enter a Name for the profile.
      • (Optional) Add a Description.
      • Configure Flood, Reconnaissance, Protocol, or EthernetSGT settings.
    3. Select Packet Based Attack. On each tab (IP Drop, TCP Drop, ICMP Drop, IPv6 Drop, and ICMPv6 Drop), select the Packet-Based Attack Protection settings you want to enforce to protect a zone.
    4. Save the Zone Protection profile.
  2. Apply the Zone Protection profile to a security zone assigned to interfaces you want to protect.
    1. Select Device SettingsZones, then either select an existing zone or Add Zone.
    2. For Zone Protection Profile, select the Zone Protection profile that you configured.
    3. Save the Zone settings.
    4. Push Config.