How to Identify the Individual Profiles in a Security Profile Group

A knowledge base article about How to Identify the Individual Profiles in a Security Profile Group provided by the UC Berkeley IT Service Hub - Knowledge Portal

On the Palo Alto Firewall Platform, profiles are a collection of security settings that address an individual area of security (e.g., virus detection, file type restrictions, etc.) and which can be applied to rules. Information Security Office (ISO) publishes a number of profiles for use in our Palo Alto Firewalls. These profiles can be assigned individually in rules, but doing so makes it more difficult to maintain consistency across multiple similar rules. In order to mitigate this issue, it’s generally advisable to use the profiles as part of a Profile Group (a defined collection of profiles). With this in mind, ISP has put together several Profile Groups that are recommended for systems and users based on if the systems are for servers or end-users as well as if the systems are on networks that contain restricted data.

Below are the steps an administrator can take to find the individual Profiles that make up a given Profile Group and then determine the settings for each of these profiles.

NOTE: Profiles and Profile Groups that are developed by ISP are designated with the ucbsec prefix and will include a capital RD if it’s meant for Restricted Data systems/users.
ADDITIONAL NOTE: The examples and profiles here can and probably will change over time. These are here as an example only.