Generate current policy reports

You can generate two types of reports for most policies: a single-policy report detailing the policy's current saved configuration, and a comparison report listing differences between two policies. You can generate a single-policy report for all policy types except health.

Note

Intrusion policy reports combine the settings in the base policy with the settings of the policy layers, and make no distinction between which settings originated in the base policy or policy layer.

Before you begin

  • Ensure you have the required access rights and licenses for the specific policy.

  • Verify you are operating within the correct domain for the policy you wish to report.

Procedure


Step 1

Access the management page for the policy for which you want to generate a report:

  • Access Control—Policies > Security policies > Access Control
  • DNS—Policies > Security policies > DNS
  • File—Policies > Security policies > Malware & File
  • Health—Troubleshooting > + Show more > Health > Policies
  • Identity—Policies > Security policies > Identity
  • Intrusion—Policies > Security policies > Intrusion
  • NAT—Policies > Network policies > NAT
  • Network Analysis—Policies > Security policies > Access Control, and then click Network Analysis Policy or Policies > Security policies > Intrusion, and then click Network Analysis Policies
    Note

    If your custom user role limits access to the first path listed here, use the second path to access the policy.

  • SSL—Policies > Security policies > Decryption

Step 2

Click Report (Report icon) next to the policy for which you want to generate a report.