This project provides policy-as-code automation for Palo Alto Networks next-generation firewalls (NGFW).
It generates a complete web-filtering policy, including:
- Security and decryption policies
- Address objects and groups
- Service objects and groups
- Application filters and groups
- Custom application, vulnerability, and spyware signatures
- External Dynamic Lists (EDLs)
- Custom URL categories
- Security profiles and profile groups
- Decryption profiles
- Tags
- Data patterns
📖 For full details, please see the online documentation.