Confused by FDQN split tunneling

Hi all hope someone could help a person who isn't to familiar with this.


I am trying to set up correctly for our users, but I want to understand this is the correct way to do this.


I want all traffic for a FQDN to go through our network first and then out network firewall. For example I would want to be put through our network and then out our firewall, instead of going out their network.


This is possible? If so what would need to be set up exactly?

Re: Confused by FDQN split tunneling

Yes, you need to create a FQDN ST allow policy that includes are FQDNs used by Facebook. Sites which are not configured to allow, would go out using the user network.

