Hey there!
In the following scenarios, the policy name field in the session table is displayed as ---:
1. If an application-based security policy is configured and the application is not identified, the packet is sent to the IAE for application identification. In this case, the policy name in the session table is displayed as ---. The policy can be matched and displayed only after the application is identified.
2. Traffic in the same security zone is permitted by default.
3. The service-manage function is enabled on the interface, and security policy matching is not performed.
4. If packets match the authentication policy, portal authentication instead of security policy matching is performed.
5. When the endpoint-independent filter is enabled, security policy matching is not performed.
6. The standby device backs up sessions from the active device, and no packets pass through the standby device.
7. Services in other forwarding processes do not match security policies.
For other information, please refer to the product documentation: