I do the same as you with creating objects for everything. I am also wondering about excluding protected ports. It does look like he is using a network rule vs a business policy. One thing i cant figure out is if using a business policy I can't see how to add the service groups vs entering the port numbers for port forwarding.
↧