Context Profiles are used in firewall rules.
There are three attributes for use in context profiles: App Id, Domain (FQDN) Name, and URL Categories. Select App Ids can have one or more sub attributes, such the TLS_Version and CIPHER_SUITE. Both App Id and FQDN can be used in a single context profile. Multiple App Ids can be used in the same profile. One App Id with sub attributes can be used - sub attributes are cleared when multiple App Id attributes are used in a single profile.
Both system defined and user defined Fully Qualified Domain Names (FQDNs) are supported. You can see the list of FQDNs when you add a new context profile of attribute type Domain (FQDN) Name. You can also see a list of FQDNs, and where they are used by navigating to
.Procedure
- Select .
- Click Add Context Profile.
- Enter a Profile Name, and optional Description.
- In the Attributes column, click Set.
- Click Add Attribute, and select one or more attributes from the drop-down menu: App ID, URL Category, or Domain (FQDN) Name.
App ID - To view available App Ids, scroll down the list, or select Attributes (App IDs).
- Click Add.
URL Category - Select one or more URL categories. To view available URL categories, scroll down the list, or select URL Categories.
- Click Add.
- Click Apply.
Domain (FQDN) Name Select a system or user-defined FQDN. To create a user-defined FQDN: - Click the three dot menu and select Add FQDN.
- Enter the domain name in the form *.[hostname].[domain]. For example, *.abracadabra.com. Do not include http:// or any other header.
- Click Save. The newly created FQDN appears in the attribute value column.
- Search and add additional FQDNs.
- Click Apply.
- (Optional) If you have selected an attribute with sub attributes such as SSL or CIFS, click Set in the Sub Attributes/Values column.
- Click Add Sub Attribute and select TLS_VERSION, TLS_CIPHER_SUITE, or CIFS_SMB_VERSION.
- Select one or more sub attributes.
- Click Add. Another sub attribute can be added by clicking Add Sub Attribute.
- Click Apply.
- Click Add.
- (Optional) To add another type of attribute, click Add Attribute again.
- Click Apply.
- (Optional) Enter a tag or scope. See Tags for more information.
- Click Save.
What to do next
Apply this context profile to a layer 7 distributed firewall rule (for layer 7 or Domain name), or gateway firewall rule (for layer 7).