Next-Generation Firewall
Cloud Management
Table of Contents
Expand All
|
Collapse All
Next-Generation Firewall Docs
-
-
-
-
-
-
-
- PAN-OS 12.1
- PAN-OS 11.2
- PAN-OS 11.1
- PAN-OS 11.0 (EoL)
- PAN-OS 10.2
- PAN-OS 10.1
- PAN-OS 10.0 (EoL)
- PAN-OS 9.1 (EoL)
- PAN-OS 9.0 (EoL)
- PAN-OS 8.1 (EoL)
-
- PAN-OS 12.1
- PAN-OS 11.2
- PAN-OS 11.1
- PAN-OS 10.2
- PAN-OS 10.1
Cloud Management
Configure packet based attack protection on a cloud managed service to determine how
the zone protection profile handles IP, IPv6, TCP, ICMP, or ICMPv6 packets.
- Create a Zone Protection profile and configure Packet-Based Attack Protection settings.
- Select ManageConfigurationNGFW and Prisma Access Security ServicesDoS Protection.Under Zone Protection Profiles, select an existing profile or Add Profile.If you add a new Zone Protection profile:
- Enter a Name for the profile.
- (Optional) Add a Description.
- Configure Flood, Reconnaissance, Protocol, or EthernetSGT settings.
Select Packet Based Attack. On each tab (IP Drop, TCP Drop, ICMP Drop, IPv6 Drop, and ICMPv6 Drop), select the Packet-Based Attack Protection settings you want to enforce to protect a zone.Save the Zone Protection profile.Apply the Zone Protection profile to a security zone assigned to interfaces you want to protect.- Select Device SettingsZones, then either select an existing zone or Add Zone.For Zone Protection Profile, select the Zone Protection profile that you configured.Save the Zone settings.Push Config.