Create security zone and interface group objects
Create empty interface objects that can be populated with interfaces later, or create security zones while configuring interfaces to provide logical grouping and management of device interfaces.
Add security zones and interface groups to which you can assign device interfaces.
Tip | You can create empty interface objects and add interfaces to them later. To add an interface, the interface must have a name. You can also create security zones (but not interface groups) while configuring interfaces. |
Before you begin
Understand the usage requirements and restrictions for each type of interface object. See Security zones and interface groups.
Procedure
Step 1 | Choose . You can alternatively choose to create objects. |
Step 2 | Click Add > Security Zone or Add > Interface Group. |
Step 3 | Enter a Name. Do not use the same name as a network or port object. These object names are deployed to the device, and duplicate names result in a failed deployment. |
Step 4 | Choose an Interface Type. |
Step 5 | (Optional) From the drop-down list, choose a device that contains interfaces you want to add. You do not need to assign interfaces on this screen; you can instead assign interfaces to the zone or group when you configure the interface. |
Step 6 | Click Save. |
What to do next
-
If an active policy references your object, deploy configuration changes.