<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FMC policy configuration problem in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-policy-configuration-problem/m-p/3675965#M132826</link>
    <description>thanks for reply,i am clearly understood</description>
    <pubDate>Fri, 27 Jul 2018 03:43:12 GMT</pubDate>
    <dc:creator>wupeifeng</dc:creator>
    <dc:date>2018-07-27T03:43:12Z</dc:date>
    <item>
      <title>FMC policy configuration problem</title>
      <link>https://community.cisco.com/t5/network-security/fmc-policy-configuration-problem/m-p/3578429#M132824</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hello，everyone&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am confused about two FMC policy Configuration problem，&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;question one：&lt;/P&gt;&lt;P&gt;on the advance config of&amp;nbsp; the access control policy , As shown in the following figure:&lt;/P&gt;&lt;P&gt;when I chose this option ,invoking intrusion policy on here ,is that mean intrusion policy taken into effect all traffic before access control policy handle traffic?&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="119425" alt="2018-07-18_22-38-41.png" class="image-1 jive-image" src="https://community.cisco.com/legacyfs/online/fusion/119425_2018-07-18_22-38-41.png" style="width: 620px; height: 397px;" /&gt;&lt;/P&gt;&lt;P&gt;question two:&lt;/P&gt;&lt;P&gt;when FTD interface on route or transparent mode ,can this option be taken into effect ?&lt;/P&gt;&lt;P&gt;for example :when i chose this option, it drop traffic ,otherwise it don't.&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="119427" alt="2018-07-18_22-40-12.png" class="jive-image image-2" src="https://community.cisco.com/legacyfs/online/fusion/119427_2018-07-18_22-40-12.png" style="width: 620px; height: 202px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i hope someone can&amp;nbsp; answer my question,thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Jul 2018 15:34:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-policy-configuration-problem/m-p/3578429#M132824</guid>
      <dc:creator>wupeifeng</dc:creator>
      <dc:date>2018-07-18T15:34:08Z</dc:date>
    </item>
    <item>
      <title>Re: FMC policy configuration problem</title>
      <link>https://community.cisco.com/t5/network-security/fmc-policy-configuration-problem/m-p/3674979#M132825</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please find the answers inline to the questions.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;A1: The option of intrusion policy before the access control policy is determined will be applicable for all the traffic that is coming to the device. If any of the incoming traffic matches the intrusion policy associated under this option it will be dropped. Else it would go to access control policy and take action based on rule match.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;A2: For any traffic that matches the intrusion policy unless the action "drop when inline" is not selected, the traffic will not be dropped. This is applicable to both routed mode as well as transparent mode.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In case if "drop when inline" is not selected, you would notice a lot of "would have dropped events"&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jul 2018 03:25:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-policy-configuration-problem/m-p/3674979#M132825</guid>
      <dc:creator>Raghunath Kulkarni</dc:creator>
      <dc:date>2018-07-26T03:25:04Z</dc:date>
    </item>
    <item>
      <title>Re: FMC policy configuration problem</title>
      <link>https://community.cisco.com/t5/network-security/fmc-policy-configuration-problem/m-p/3675965#M132826</link>
      <description>thanks for reply,i am clearly understood</description>
      <pubDate>Fri, 27 Jul 2018 03:43:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-policy-configuration-problem/m-p/3675965#M132826</guid>
      <dc:creator>wupeifeng</dc:creator>
      <dc:date>2018-07-27T03:43:12Z</dc:date>
    </item>
  </channel>
</rss>

