<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Changing FTD Platform Settings in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237436#M1118255</link>
    <description>&lt;P&gt;I currently have 2 sites, and each site has (2) FTDs in active/passive failover. When looking at the Platform Settings, they both share a single policy. I need to add another policy for each pair to change their syslog server settings to go to different syslog servers. When I create a "Threat Defense Settings" policy and add an HA to it, I am presented with the following message:&lt;/P&gt;&lt;P&gt;Following device have an existing platform setting or a DNS value configured by CLI. Do you want to replace the existing configuration?&lt;/P&gt;&lt;P&gt;How can I determine which setting(s) would be modified? Is there a potential for taking the pair offline?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 16 Dec 2024 13:17:10 GMT</pubDate>
    <dc:creator>jberrios</dc:creator>
    <dc:date>2024-12-16T13:17:10Z</dc:date>
    <item>
      <title>Changing FTD Platform Settings</title>
      <link>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237436#M1118255</link>
      <description>&lt;P&gt;I currently have 2 sites, and each site has (2) FTDs in active/passive failover. When looking at the Platform Settings, they both share a single policy. I need to add another policy for each pair to change their syslog server settings to go to different syslog servers. When I create a "Threat Defense Settings" policy and add an HA to it, I am presented with the following message:&lt;/P&gt;&lt;P&gt;Following device have an existing platform setting or a DNS value configured by CLI. Do you want to replace the existing configuration?&lt;/P&gt;&lt;P&gt;How can I determine which setting(s) would be modified? Is there a potential for taking the pair offline?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2024 13:17:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237436#M1118255</guid>
      <dc:creator>jberrios</dc:creator>
      <dc:date>2024-12-16T13:17:10Z</dc:date>
    </item>
    <item>
      <title>Re: Changing FTD Platform Settings</title>
      <link>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237448#M1118256</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1441521"&gt;@jberrios&lt;/a&gt; it is unlikely to impact transit traffic, as the Platform Settings policy applies setting applicable to the FTD itself. If your new Platform settings policy does not include DNS settings and the existing one does, you would probably want to ensure you define DNS servers and another other settings.&lt;/P&gt;
&lt;P&gt;Why do you need to create a new policy, can you not amend the exist policy that is applied with the syslog servers?&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2024 13:26:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237448#M1118256</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2024-12-16T13:26:16Z</dc:date>
    </item>
    <item>
      <title>Re: Changing FTD Platform Settings</title>
      <link>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237459#M1118257</link>
      <description>&lt;P&gt;there is config replication from active to standby and there some little config not replicate&amp;nbsp;&lt;BR /&gt;config different syslog is replication so what you try to do will not work&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2024 13:58:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237459#M1118257</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-12-16T13:58:49Z</dc:date>
    </item>
    <item>
      <title>Re: Changing FTD Platform Settings</title>
      <link>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237464#M1118259</link>
      <description>&lt;P&gt;In addition to what &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt; correctly mentioned, you can preview the deployment changes before clicking the final confirmation button.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="MarvinRhoads_0-1734357836708.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/236006i672A39503D023269/image-size/large?v=v2&amp;amp;px=999" role="button" title="MarvinRhoads_0-1734357836708.png" alt="MarvinRhoads_0-1734357836708.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2024 14:04:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237464#M1118259</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2024-12-16T14:04:07Z</dc:date>
    </item>
    <item>
      <title>Re: Changing FTD Platform Settings</title>
      <link>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237522#M1118266</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp;, is it possible to specify multiple syslog servers within the same policy and direct each pair to specific syslog servers?&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2024 16:14:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237522#M1118266</guid>
      <dc:creator>jberrios</dc:creator>
      <dc:date>2024-12-16T16:14:27Z</dc:date>
    </item>
    <item>
      <title>Re: Changing FTD Platform Settings</title>
      <link>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237525#M1118268</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1441521"&gt;@jberrios&lt;/a&gt; not if they share the same policy.&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2024 16:19:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5237525#M1118268</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2024-12-16T16:19:09Z</dc:date>
    </item>
    <item>
      <title>Re: Changing FTD Platform Settings</title>
      <link>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5305344#M1121595</link>
      <description>&lt;P&gt;I have also began creating a platform settings policy in order to restrict ICMP access. I received the message regarding DNS settings, which were previously configured via CLI. If I keep the option, "Enable DNS name resolution by device" untoggled, will the FTD default back to the settings configured by CLI?&lt;/P&gt;</description>
      <pubDate>Thu, 03 Jul 2025 14:57:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5305344#M1121595</guid>
      <dc:creator>jtorres44</dc:creator>
      <dc:date>2025-07-03T14:57:24Z</dc:date>
    </item>
    <item>
      <title>Re: Changing FTD Platform Settings</title>
      <link>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5306251#M1121642</link>
      <description>&lt;P&gt;The cli-based DNS configuration is for the management interface only. The setting under platform policy is for dataplane DNS resolution and commonly used for access control policy entries that include FQDN references.&lt;/P&gt;</description>
      <pubDate>Mon, 07 Jul 2025 02:58:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/changing-ftd-platform-settings/m-p/5306251#M1121642</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2025-07-07T02:58:18Z</dc:date>
    </item>
  </channel>
</rss>

