For the complete documentation index, see llms.txt. This page is also available as Markdown.
Cortex Cloud Runtime

Host firewall

The Cortex Cloud host firewall enables you to control communications on your endpoints. To use the host firewall, you set rules that allow or block the traffic on the devices and apply them to your endpoints using host firewall policy rules. Additionally, you can configure different sets of rules based on the current location of your endpoints - within or outside your organization network. The Cortex Cloud host firewall rules leverage the operating system firewall APIs and enforce these rules on your endpoints, but not your Windows or Mac firewall settings.

The following apply Cortex Cloud host firewall policy rules on your endpoints:

Platform
Requirements and Limitations

Windows

  • By default, Cortex firewall is disabled and Windows firewall has control. Enforcing Cortex firewall rules will take control away from Windows Firewall, and Windows firewall rules will no longer apply.

  • It is recommended to disable the windows firewall on endpoints running Windows 7 SP1 before applying the Cortex Cloud host firewall profile.

Mac

  • After you disable or remove the Cortex Cloud host-firewall policy on the endpoint, the system firewall on the endpoint is disabled.

  • You cannot configure the following Mac host firewall settings with the Cortex Cloud host firewall.

    • Automatically allow built-in software to receive incoming connections.

    • Automatically allow downloaded signed software to receive incoming connections.

Linux

Not supported.

Last updated

Was this helpful?