Layer 7 - Create container with action "ALLOW" and not "BLOCK" !?

  • Hi,

    I created a layer 7 container with several p2p protocols and the action "block". I added this container to a firewall (pass) rule. So if I understand this correct then traffic passes the firewall rule and if layer 7 detects a data stream which I blocked in layer 7 container then the traffic will be blocked, right ?

    So now I would like to create a firewall rule which only allows traffic for TCP and port 80. I only want to allow http traffic. But I now want to add a layer 7 container which checks the data stream if it is really legitimate http traffic and no other (tunneled) traffic.

    But when I create a layer 7 container there is no action "allow". Is this a bug ? Isn't this supported ? Is there any workaround ? Did I miss something ?

    Thank you for your help!

  • Not yet implemented.

  • @ermal:

    Any roadmap for this?

