To filter by application firewall rules, you need to enable them on both the POLICY | DPI-SSL > Client SSL page and the POLICY | Rules and Policies > App Control page.
Click General.
Select the Enable SSL Client Inspection checkbox.
Select the Application Firewall checkbox.
Click Accept.
Navigate to POLICY | Rules and Policies > App Control page.
Scroll to the App Rules Global Settings section.
Select Enable App Control. This option is not selected by default.
Configure an HTTP Client policy to block Microsoft Internet Explorer browser with block page as an action for the policy.
Click Accept.
Access any website using the HTTPS protocol with Internet Explorer to verify it is blocked.