View high expansion rules for a policy

Use the High expansion rules filter to identify rules that contribute the most to policy expansion.

Procedure


Step 1

In the Cloud-Delivered Firewall Management Center menu, choose Policies > Security policies > Access Control.

Step 2

Edit the access control policy.

Step 3

Click Filter presets (Filter(filter icon) in the access policy search panel.

Step 4

In the Show options, select High expansion rules.

Step 5

Click Apply.

Cloud-Delivered Firewall Management Center lists the high expansion rules for the policy scope. In this mode, the calculation uses domain-level object overrides and does not use device-specific security-zone calculations.