Palo Alto create a security policy
The PAN-OS lab is a browser copy of the firewall UI: Policies, Objects, Network, Device, and a CLI. Creating a security policy is a Policies action. The practice check for a new rule is set rulebase security rules my-rule from trust to untrust action allow.
Open Policies, add the rule, then use Commit on the top bar. PAN-OS keeps a candidate until commit, and this lab follows that. You can edit the rule action or delete the rule afterwards. The matching delete practice line is delete rulebase security rules plus the rule name.
To see a flow hit a rule, use the traffic lab, which sends ping and curl from a desktop through a prebuilt firewall and writes session and traffic logs. The interface workbook is a separate task for a new Layer 3 interface and zone. This page does not push a policy to a real Palo Alto firewall.
Do it in the lab
Open the PAN-OS lab in guest mode.Go to Policies and add a security rule from trust to untrust with action allow.Commit from the top bar.Optional: open the traffic lab and send a ping or curl to see a session and a traffic log.
