Policy Discovery Flow Filters
If certain flows are generating unwanted policies, you can exclude those flows from automatic policy discovery using exclusion filters. For example, certain protocols like ICMP in the final allow list model, you can create an exclusion filter with a protocol field set to ICMP.
|
|
You can create one or both of the following, then enable either or both when discovering policies:
-
A list of exclusion filters for each workspace.
-
A list of default exclusion filters that is available to all workspaces in your tenant.
You can also enable or disable either or both lists for the Default Policy Discovery Config.
For instructions, see: