Auto-tagging closes the loop between detection and enforcement. When the firewall logs an event that matters, such as a critical threat from an internal host, it can tag the host's IP address. A dynamic address group (DAG) that matches the tag then places the host into a quarantine rule, all within seconds and without a commit. HTTP server profiles extend the same idea outward, sending the event to ticketing, chat or orchestration systems so people and other tools can respond too.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 6 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.