How to Create a Service Control Policy
Navigate to the Services Security Module
Navigation: Policy > Services

Select Block or Allow
To begin blocking or allowing access to content based on Services, navigate to the body of the Services Security Module shown above.
Once here, search for the specific Service which you would like to block or allow access.
For each Service you will be making two block or allow decisions, one "Outbound" (Traffic coming from your network to the Internet) and the second "Inbound" (Traffic Coming from the Internet to your Network)
Example:
Let's assume you would like HTTP traffic to be allowed outbound from your network to the internet, but not inbound from the internet.
You would do this simply by selecting the Green Check = Allow for the HTTP service under "Outbound" and the Red Minus = Block for "Inbound"

After these two block and allow decisions have been decided for each Service in your policy change, you can now proceed to Step 3.
If you need to create a custom service toggle in the Services security module, please follow the "How to Create a Custom Service Toggle" Guide.
Apply Your New Policy
Propagating configuration changes throughout the AT&T Dynamic Defense portal is a simple process.
Step 3a:
Making policy changes (e.g. adding, editing, or deleting policy rules) will be represented in a draft state shown on the right-hand side of the screen when the first policy edit is made. A draft will not be made active until you complete the remaining steps.

Step 3b:
When ready to apply your new policy, move your mouse over the "Draft" button and click "Apply Policy" to activate the draft state. Activating the changes effectively pushes the configuration changes to the network embedded security to be applied across your AT&T Dedicated Internet connection.

A prompt will appear asking if you are sure you want to continue. Here you can add any notes about the new policy and then select "Continue" to activate the policy.

Step 3c:
After applying the policy, the Draft state will then convert into a Pending state as the policy is pushed over the network to be updated within the AT&T Dynamic Defense Service.

Step 3d:
Once the policy is successfully updated within the AT&T Dynamic Defense Service the status will then be updated to an active state and a new notification will be populated to show success.
