Adds further allow rules on top of an App Control for Business base policy but can never take away anything the base policy permits.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Supplemental policy in context, with comparison tables and the common traps.
Terms in this definition
- App Control for Business
Previously known as Windows Defender Application Control. On Windows it blocks any driver or app that its policy does not permit, and Microsoft suggests choosing it over AppLocker.
- Parent firewall policy
Base Azure Firewall policy inherited by child policies. NAT rules do not flow down, network and application rule collections from the parent always override the child's, and firewalls in any region can use it.