![]() |
|
|
|
![]() |
evasion . |
![]() |
|
|
Document:PAN-OS® New Features Guide
Enhanced Security for URL Category and Application-Based Policy
Last Updated:
Mon Jul 06 14:59:42 PDT 2020
Current Version:
7.1 (EoL)
With PAN-OS 7.1.1, you can enable evasion prevention for policy rules that block or allow traffic based on URL category and/or application. Setting up this evasion prevention feature enables the firewall to check that the hostname or SNI indicated in an initial HTTP or TLS request corresponds to the destination IP address for the connecting client.