Can we use wildcard in the destination field of a security policy?

Can we use wildcard in the destination field of a security policy?

6601
Created On 01/25/24 02:16 AM - Last Modified 01/30/24 03:09 AM


Question


Can we use wildcard in the destination field of a security policy?

Environment


  • Palo Alto Firewalls
  • PAN-OS 9.1 and above
  • Security Policy
  • Wildcard


Answer


  1. Using wildcard such as "*.abc.com" in the destination address field of a security policy is not supported.
  2. The workaround is to use a custom URL category and use add the wildcard URL under the URL category.


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000008WmRCAU&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language