Configure Ethernet SGT Protection (SCM)
Focus
Focus
Next-Generation Firewall

Configure Ethernet SGT Protection (SCM)

Table of Contents


Configure Ethernet SGT Protection (SCM)

Procedure for configuring an Ethernet SGT protection profile in Strata Cloud Manager.
  1. Log in to Strata Cloud Manager.
  2. Select ManageConfigurationNGFW and Prisma AccessSecurity ServicesDoS ProtectionConfigurationNGFW and Prisma AccessSecurity ServicesDoS Protection and select the Configuration Scope where you want to create the Zone Protection profile.
    You can select a folder or firewall from your Folders or select Snippets to configure the Zone Protection profile in a snippet.
  3. Navigate to the Zone Protection Profiles and Add Profile.
  4. Enter a descriptive Name.
  5. (Optional) Enter a Description.
  6. Select Ethernet SGT.
  7. Add a Layer 2 SGT Exclude List by name.
  8. Enter one or more Tag values for the list.
    Range is 0 to 65,535. You can enter individual entries that are a contiguous range of tag values (for example, 100-500). You can add up to 100 (individual or range) tag entries in an Exclude List.
  9. Enable the Layer 2 SGT Exclude List.
    Layer 2 SGT Exclude Lists are enabled by default when added.
    You can modify an existing Zone Protection profile to disable a specific Layer 2 SGT Exclude List from enforcement.
  10. Save.