<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FMC: apply changes to multiple Access Control rules in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/4739675#M1095991</link>
    <description>&lt;P&gt;Oh, bollox...&amp;nbsp; Just realised the logging requires the 'Log at Beggining/End' to be ticked AND the 'Send Connection Events to:' to have a destination ticked when editing a range of rules.....&amp;nbsp; Thought the GUI would kick it out if no destination is selected as that's an invalid option.&lt;/P&gt;
&lt;P&gt;OK, so question answered.&amp;nbsp; Not sure about the 'adding a Monitor Rule at the beginning' though?&lt;/P&gt;</description>
    <pubDate>Thu, 15 Dec 2022 13:02:48 GMT</pubDate>
    <dc:creator>andrew.butterworth</dc:creator>
    <dc:date>2022-12-15T13:02:48Z</dc:date>
    <item>
      <title>FMC: apply changes to multiple Access Control rules</title>
      <link>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/3832472#M981702</link>
      <description>&lt;P&gt;Is there a way to apply the same change to multiple rules within an access control policy?&lt;/P&gt;&lt;P&gt;Recently I had to enable logging on every single rule withing an access control policy and now I have to enable the IPS policy to every single rule. Is there a way to enable this to all the rules at the same time?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 17:00:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/3832472#M981702</guid>
      <dc:creator>PAUL GILBERT ARIAS</dc:creator>
      <dc:date>2020-02-21T17:00:58Z</dc:date>
    </item>
    <item>
      <title>Re: FMC: apply changes to multiple Access Control rules</title>
      <link>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/3832723#M981703</link>
      <description>Hi&lt;BR /&gt;&lt;BR /&gt;This isn't possible.&lt;BR /&gt;A workaround would be to script this change by using APIs.</description>
      <pubDate>Fri, 05 Apr 2019 04:27:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/3832723#M981703</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2019-04-05T04:27:40Z</dc:date>
    </item>
    <item>
      <title>Re: FMC: apply changes to multiple Access Control rules</title>
      <link>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/4739652#M1095988</link>
      <description>&lt;P&gt;This is sort of possible, however it seems to be only half implemented.&amp;nbsp; I've tried it on FMC 6.6.5.2, 7.0.5 and 7.3 and the behaviour is the same on all of them.&lt;/P&gt;
&lt;P&gt;Open the ACP, hold down shift, left click the 1st rule, go to the last rule or a rule further in the list and left click again and you will see all lines selected.&amp;nbsp; Right click over one of the selected rules and a menu appears, click 'edit' and you are presented with options to apply to all selected rules.&amp;nbsp; Check the box for logging (at the beginning or at the end of the connection) and click OK.&amp;nbsp; This enabled logging for all the selected rules.&amp;nbsp; However.....&amp;nbsp; It doesn't set a destination for the logging.&amp;nbsp; You then need to go into each rule and click the checkbox for the destination (Event Viewer, Syslog or SNMP trap).&amp;nbsp; So you are no better off....&amp;nbsp; &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;It works for inspection rules though and you can select the IPS policy to apply to all the rules.&lt;/P&gt;
&lt;P&gt;Anyone know if its possible to enable logging for multiple rules AND select a destination for the logs?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 15 Dec 2022 11:54:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/4739652#M1095988</guid>
      <dc:creator>andrew.butterworth</dc:creator>
      <dc:date>2022-12-15T11:54:28Z</dc:date>
    </item>
    <item>
      <title>Re: FMC: apply changes to multiple Access Control rules</title>
      <link>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/4739655#M1095989</link>
      <description>&lt;P&gt;And another opinion ... ;.)&lt;/P&gt;
&lt;P&gt;It is easily doable. The first thing with the logging can be done regardless of the FMC version by adding a Monitor Rule at the beginning.. The other thing is done with the newer FMC versions (7.1+ or 7.2+, not sure which one it was) where the new ACP Editor can be enabled and be used to directly apply the same change to a broad range of ACP rules.&lt;/P&gt;</description>
      <pubDate>Thu, 15 Dec 2022 12:04:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/4739655#M1095989</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2022-12-15T12:04:14Z</dc:date>
    </item>
    <item>
      <title>Re: FMC: apply changes to multiple Access Control rules</title>
      <link>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/4739672#M1095990</link>
      <description>&lt;P&gt;"&lt;SPAN&gt;by adding a Monitor Rule at the beginning."&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;"new ACP Editor can be enabled and be used to directly apply the same change to a broad range of ACP rules."&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Please elaborate?&lt;/P&gt;
&lt;P&gt;I can see the option in the new UI to select multiple rules and 'Select Bulk Action', however the same options are presented?&lt;/P&gt;
&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;</description>
      <pubDate>Thu, 15 Dec 2022 12:58:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/4739672#M1095990</guid>
      <dc:creator>andrew.butterworth</dc:creator>
      <dc:date>2022-12-15T12:58:07Z</dc:date>
    </item>
    <item>
      <title>Re: FMC: apply changes to multiple Access Control rules</title>
      <link>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/4739675#M1095991</link>
      <description>&lt;P&gt;Oh, bollox...&amp;nbsp; Just realised the logging requires the 'Log at Beggining/End' to be ticked AND the 'Send Connection Events to:' to have a destination ticked when editing a range of rules.....&amp;nbsp; Thought the GUI would kick it out if no destination is selected as that's an invalid option.&lt;/P&gt;
&lt;P&gt;OK, so question answered.&amp;nbsp; Not sure about the 'adding a Monitor Rule at the beginning' though?&lt;/P&gt;</description>
      <pubDate>Thu, 15 Dec 2022 13:02:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/4739675#M1095991</guid>
      <dc:creator>andrew.butterworth</dc:creator>
      <dc:date>2022-12-15T13:02:48Z</dc:date>
    </item>
    <item>
      <title>Re: FMC: apply changes to multiple Access Control rules</title>
      <link>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/4739880#M1096003</link>
      <description>&lt;P&gt;You can add a rule at the beginning with the Action "Monitor" It will not decide on any traffic to block or allow, the whole purpose is to add a logging action to the further processing.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="KarstenIwen_1-1671130984861.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/171137iE5B7AB64364F68DA/image-size/medium?v=v2&amp;amp;px=400" role="button" title="KarstenIwen_1-1671130984861.png" alt="KarstenIwen_1-1671130984861.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;And with the bulk action you can easily assign the IPS policy to all selected rules:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="KarstenIwen_2-1671131094696.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/171138i301FB61FDADA5243/image-size/medium?v=v2&amp;amp;px=400" role="button" title="KarstenIwen_2-1671131094696.png" alt="KarstenIwen_2-1671131094696.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 15 Dec 2022 19:05:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/4739880#M1096003</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2022-12-15T19:05:35Z</dc:date>
    </item>
    <item>
      <title>Re: FMC: apply changes to multiple Access Control rules</title>
      <link>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/5286820#M1120833</link>
      <description>&lt;P&gt;at least the new FMC has the option to bulkupdate ACP, I cant remember from which version but this is from a 7.4, just select the all chackbox&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="KasperElsborg_0-1746088710127.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/244374i8A5235584ABC10DD/image-size/medium?v=v2&amp;amp;px=400" role="button" title="KasperElsborg_0-1746088710127.png" alt="KasperElsborg_0-1746088710127.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 01 May 2025 08:39:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-apply-changes-to-multiple-access-control-rules/m-p/5286820#M1120833</guid>
      <dc:creator>Kasper Elsborg</dc:creator>
      <dc:date>2025-05-01T08:39:13Z</dc:date>
    </item>
  </channel>
</rss>

