<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Bypassing Security Intelligence for a specific ACP entry in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984867#M1107259</link>
    <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="images (2).jpeg" style="width: 998px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/205780iC4F148BE94C51D45/image-size/medium?v=v2&amp;amp;px=400" role="button" title="images (2).jpeg" alt="images (2).jpeg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; this flow' there is no other than ACP trust can make specific vlan bypass SI and all snort.&lt;/P&gt;
&lt;P&gt;Remember we talk about l3-l4 so only prefilter and acp can do that.&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
    <pubDate>Tue, 26 Dec 2023 06:27:14 GMT</pubDate>
    <dc:creator>MHM Cisco World</dc:creator>
    <dc:date>2023-12-26T06:27:14Z</dc:date>
    <item>
      <title>Bypassing Security Intelligence for a specific ACP entry</title>
      <link>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984450#M1107249</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;is there a way to bypass SI for a specific ACP entry?&lt;/P&gt;&lt;P&gt;As i see it , security intelligence binds to the ACP as a whole.&amp;nbsp;&lt;/P&gt;&lt;P&gt;But is there any way that an ACP entry to bypass the check of the security intelligence?&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Ditter&lt;/P&gt;</description>
      <pubDate>Mon, 25 Dec 2023 09:29:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984450#M1107249</guid>
      <dc:creator>Ditter</dc:creator>
      <dc:date>2023-12-25T09:29:44Z</dc:date>
    </item>
    <item>
      <title>Re: Bypassing Security Intelligence for a specific ACP entry</title>
      <link>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984453#M1107250</link>
      <description>&lt;P&gt;check below guide :&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/212321-clarify-the-firepower-threat-defense-acc.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/212321-clarify-the-firepower-threat-defense-acc.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/security_intelligence_blacklisting.html#ID-2192-00000005" target="_blank" rel="noopener"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/security_intelligence_blacklisting.html#ID-2192-00000005&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Dec 2023 09:52:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984453#M1107250</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2023-12-25T09:52:37Z</dc:date>
    </item>
    <item>
      <title>Re: Bypassing Security Intelligence for a specific ACP entry</title>
      <link>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984466#M1107252</link>
      <description>&lt;P&gt;Add new entry in ACP and action is trust' this make specific traffic bypass all Snort include SI.&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Mon, 25 Dec 2023 10:26:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984466#M1107252</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-12-25T10:26:25Z</dc:date>
    </item>
    <item>
      <title>Re: Bypassing Security Intelligence for a specific ACP entry</title>
      <link>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984532#M1107257</link>
      <description>&lt;P&gt;Thanks for the suggestion. I thought about this trust relationship, but what i want is a specific vlan to be checked against the ACP but now checked against SI.&amp;nbsp; If i have this vlan in trust relationship it will not be checked against the ACP policy rules.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can we check a vlan against SI but not bypass the ACP rules?&lt;/P&gt;&lt;P&gt;Ditter&lt;/P&gt;</description>
      <pubDate>Mon, 25 Dec 2023 15:35:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984532#M1107257</guid>
      <dc:creator>Ditter</dc:creator>
      <dc:date>2023-12-25T15:35:23Z</dc:date>
    </item>
    <item>
      <title>Re: Bypassing Security Intelligence for a specific ACP entry</title>
      <link>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984536#M1107258</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Engaging in activities that circumvent security measures without authorization can have serious consequences and may violate ethical and legal standards.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Dec 2023 15:52:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984536#M1107258</guid>
      <dc:creator>mitchelhorstone</dc:creator>
      <dc:date>2023-12-25T15:52:23Z</dc:date>
    </item>
    <item>
      <title>Re: Bypassing Security Intelligence for a specific ACP entry</title>
      <link>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984867#M1107259</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="images (2).jpeg" style="width: 998px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/205780iC4F148BE94C51D45/image-size/medium?v=v2&amp;amp;px=400" role="button" title="images (2).jpeg" alt="images (2).jpeg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; this flow' there is no other than ACP trust can make specific vlan bypass SI and all snort.&lt;/P&gt;
&lt;P&gt;Remember we talk about l3-l4 so only prefilter and acp can do that.&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Tue, 26 Dec 2023 06:27:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4984867#M1107259</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-12-26T06:27:14Z</dc:date>
    </item>
    <item>
      <title>Re: Bypassing Security Intelligence for a specific ACP entry</title>
      <link>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4985024#M1107260</link>
      <description>&lt;P&gt;You would have to allow the traffic via a prefilter rule (or set of rules). &lt;/P&gt;
&lt;P&gt;What is the reason behind not wanting SI to apply?&lt;/P&gt;</description>
      <pubDate>Tue, 26 Dec 2023 11:39:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4985024#M1107260</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2023-12-26T11:39:03Z</dc:date>
    </item>
    <item>
      <title>Re: Bypassing Security Intelligence for a specific ACP entry</title>
      <link>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4985172#M1107264</link>
      <description>&lt;P&gt;Thanks for the answer.&lt;/P&gt;&lt;P&gt;I want to have a test vlan so that it can bypass the SI in order to check the results (or not) of the SI.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Dec 2023 16:26:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4985172#M1107264</guid>
      <dc:creator>Ditter</dc:creator>
      <dc:date>2023-12-26T16:26:36Z</dc:date>
    </item>
    <item>
      <title>Re: Bypassing Security Intelligence for a specific ACP entry</title>
      <link>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4985962#M1107295</link>
      <description>&lt;P&gt;I was thinking about nested ACPs.&amp;nbsp; &amp;nbsp;As i see SI is an inherited feature so if i used inheritance could i do that?&lt;/P&gt;</description>
      <pubDate>Wed, 27 Dec 2023 14:39:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bypassing-security-intelligence-for-a-specific-acp-entry/m-p/4985962#M1107295</guid>
      <dc:creator>Ditter</dc:creator>
      <dc:date>2023-12-27T14:39:41Z</dc:date>
    </item>
  </channel>
</rss>

