Preserve custom timeouts when migrating from port to application-based policies using
service objects, maintaining app visibility without overriding App-ID or creating custom
configs.
| Where Can I Use This? | What Do I Need? |
Prisma Access Next-Generation Firewall
|
This is a core Network Security feature for NGFWs and Prisma
Access; no prerequisites needed.
|
Easily maintain custom timeouts for applications as you move from a
port-based policy to an application-based policy. Use this method to maintain custom
timeouts instead of overriding App-ID (losing application visibility) or creating a
custom App-ID (expending time and research).
To get started, configure custom
timeout settings as part of a service object:
Then add the service object in a policy rule to apply the custom timeouts to
the application(s) the rule enforces.
The following steps describe how apply
custom timeouts to applications; to apply custom timeouts to user groups, you can follow
the same steps but just make sure to add the service object to the security policy rule
that enforces the users to whom you want the timeout to apply.