[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]
Subject: Re: [openc2-actuator] Re: Firewall Profile: Set action
Hi Alex / Joe
I can think of so many “set” operations / actions. Below are some of them:
* set source ip - the ip of the source or the starting point may change in a regular basis
* set host properties - in case of Palo Alto and other firewalls, they use host properties (such as from global protect or CounterACT)
* set tags - again Palo Alto, or VMWare NSX, Illumio and others use dynamic tags for firewall rule for policy or segmentation
Hope this justifies as a reason to keep “set” operation / action in the firewall profile
WARNING - CONFIDENTIAL INFORMATION:
Thanks,
Nirmal R.
The information contained in the e-mail may contain confidential and privileged information and is intended solely for the use of the intended recipient(s). Access for any review, re-transmission, dissemination or other use of, or taking of any action in regard and reliance upon this e-mail by persons or entities other than the intended recipient(s) is unauthorized and prohibited. If you are not the intended recipient, please contact the sender by reply e-mail and destroy all copies of the original message and any attachments. |
[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]