Policy Object: Regions
Define regions to apply policy to specified countries or locations. Applying policy based
on region is a great way to control traffic between branch offices.
| Where Can I Use This? | What Do I Need? |
- NGFW (Cloud Managed)
- NGFW (PAN-OS & Panorama Managed)
- Prisma Access (Managed by Strata Cloud Manager)
- Prisma Access (Managed by Panorama)
| Check for any license or role requirements for the products you're using. |
Enhance your security posture by limiting exposure to potential threats from
high-risk regions, bolster your defense against malicious activities such as
cyberattacks or data breaches, and compliance with regulatory frameworks that mandate
restricted or monitored access to and from specific geographic areas.
In today's interconnected world, you might sometimes face distinct security
challenges that vary based on the regions from which network traffic originates. The
Region policy object provides a fine-grained control
mechanism that aligns security measures with specific geographic regions or
countries.
Use Region to define rules and restrictions based on the
geographic source of traffic, enabling a more tailored approach to network security.
This may include allowing or denying traffic from certain countries, regions, or
continents based on your security requirements and regulatory compliance
obligations.
Region is available as an option when specifying source and
destination for security rules, decryption security rules, and DoS security rules.
You can choose from a standard list of countries or use the region settings described in
this section to define custom regions to include as options for Security rules.
Keep reading to learn how to add geographical regions for applying
policy.