Palo Alto Notes

Footnotes

  1. The 6-tuple key consists of the following: source-address, destination-address, source-port, destination-port, protocol, and security-zone.↩︎

  2. The SNI field (server name indication) is transmitted in clear text during the TLS handshake - more detail on how PA inspects this located here.↩︎

  3. Attached article validates this.↩︎

  4. Attached article describes how to allow asymmetric traffic.↩︎