Using the Internal Network Firewall Policy, the admin can deny the default internet policy to block all domains, then selectively allow only essential websites (e.g., company portals, cloud apps, or email services). They can also block certain protocols or services, such as peer-to-peer file sharing, while permitting critical business traffic.
HOW IT WORKS:
Step 1:
Go to the desired cluster, in which you want to implement Internal Network Firewall Policy.
Step 2:
To create Internal Network Firewall Policy go to policy under Profiles section. Click on the create policy to create a new policy.
Step 3:
Give a Profile name and Description, After that click on the Definitions.
Step 4:
Select whether you want to allow default internet network policy.
NOTE: If you deny the default internet network policy, it will block all the domains present on the Internet.
Step 5:
Enter the IP address or domain name of the website you want to allow or block in your network and select the common services or protocols to restrict.
Step 6:
To add multiple domains, click the "+" (plus) icon on the right side of the tab.
Click Save to apply and store this custom policy.