I was just curious what the best way to setup rules would be in regards to website browsing.
We recently deployed SEP 14 to our environment, and are seeing a number of legitimate being blocked. Mostly SSL providers like globalsign.net and comodoca.com, as well as some website’s itself like Equifax. 

For now, we have been adding them to whitelist rules within Symantec’s firewall, but we are a large company so this isn’t a realistic solution when web traffic is unpredictable. 
What would the risks be for creating a rule to allow all port 80 and 443 traffic through chrome.exe and iexplore.exe? I feel as though that’s not likely the most secure solution.

