SmartGroups
A Distributed Cloud Firewall (DCF) SmartGroup contains one or more filters to identify cloud endpoints that map to an app domain. A filter specifies resource matching criteria. Matching criteria could be a cloud tag; a resource attribute (such as account name or region); a list of IP prefixes; or a Site2Cloud external connection. All conditions within the filter must be satisfied to be matched. A tag or resource attribute-based filter must be associated with a resource type (VPC/VNet, subnet, or VM).- CoPilot UI
- Terraform
For the steps to create SmartGroups in the CoPilot UI, see
Creating SmartGroups
.
WebGroups
A DCF WebGroup contains one or more domain names or URLs that assists in filtering (and providing security to) Internet-bound traffic.- CoPilot UI
- Terraform
For the steps to create WebGroups in the CoPilot UI, see
Creating WebGroups
.
ExternalGroups
An ExternalGroup can contain countries, threat feeds, and SaaS-based services (Azure and GitHub).- CoPilot UI
- Terraform
For the steps to create ExternalGroups in the CoPilot UI, see
Managing the Relationship Between Feeds and ExternalGroups
.