Tags allow you to identify the purpose or function of a policy rule and help you
better organize your policy rulebase. After you apply tags to the policy rules in
your policy rulebase, you can use the
Tag Browser to visually group and manage
your policy rulebase based on the tags you assigned to your policy rules. When
viewing your policy rulebase using tags, you can perform operational procedures such
as adding, deleting, or moving policy rules with the applied tagging more easily.
Additionally, you can filter your policy rulebase using tags to apply one or more
tag search filters to the policy rulebase to narrow down the list of policy rules
displayed. Viewing your policy rulebase using tags maintains the rule evaluation
order.
Policy rulebase management using tags is supported for across all policy rulebases.
For firewalls managed by a Panorama management server, you can create and assign
tags to policy rules from Panorama. Both Panorama, managed firewalls, and standalone
firewalls running PAN-OS 10.2.5 or later 10.2 or PAN-OS 11.0.3 or later release
support policy rulebase base management using tags.