The Firewall Catalog simplifies the process of creating firewall rules and groups by enabling you to reference existing rules, groups, network options, applications, executables, and locations.
When referencing a catalog item, you create a dependent link between it and a firewall rule or group. Any change to the item in the catalog also changes the item wherever it is used. You can remove the dependency by breaking the link.
The Firewall Catalog, found in Trellix ePO - On-prem under Policy, includes previously added firewall rule and firewall group items. You can add items individually to the catalog by linking items from firewall and rule groups. You can also import items from XML-format exports of Rules policies.