In this session we take a look at the evolution of Firewall policy, transitioning from ports and protocols to context based policies - App-ID+ TLS inspection, UserID and Content ID for huge attack surface reduction gains. You will learn why an application based policy is the only way to reduce attack surface when compared to ports and protocols.