Cloud Device Groups on Panorama allow you to centrally manage firewall policy
rules. You create policy rules on Panorama either as pre-rules or post-rules.
These rules allow you to create a layered approach for implementing policy.
To configure policy rules for the cloud device group in Panorama: