Skip to content

Security FQDN List

Configure Security FQDN list.

Diagram

policy_object_profile (sdwan.feature_profiles)

Section titled “policy_object_profile (sdwan.feature_profiles)”
NameTypeConstraintMandatoryDefault Value
security_fqdn_listsList[security_fqdn_lists]No

security_fqdn_lists (sdwan.feature_profiles.policy_object_profile)

Section titled “security_fqdn_lists (sdwan.feature_profiles.policy_object_profile)”
NameTypeConstraintMandatoryDefault Value
nameStringRegex: ^[^&<>! "]{1,128}$Yes
fqdnsListString[Regex: ^(?=.{1,120}$)((\*|[a-zA-Z0-9-]{1,63})\.)+([a-zA-Z0-9-]{2,63})$]Yes

Example-1: This example shows the configuration for the Security FQDN list matching exact URL ‘cisco.com’ OR any URL that finishes with ‘.service-now.com’ OR any URL that finishes with ‘.demo.acme.net’.

sdwan:
feature_profiles:
policy_object_profile:
security_fqdn_lists:
- name: security_fqdn
fqdns:
- cisco.com
- '*.service-now.com'
- '*.demo.acme.net'