<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to rollback a change in the policy that has not been deployed on FTD from FMC ? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/how-to-rollback-a-change-in-the-policy-that-has-not-been/m-p/3946878#M922926</link>
    <description>Hi&lt;BR /&gt;&lt;BR /&gt;Unfortunately you can't. This is an existing enhancement request:&lt;BR /&gt;&lt;A href="https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvm28872/?rfs=iqvred" target="_blank"&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvm28872/?rfs=iqvred&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;If you have a backup, you can restore it.&lt;BR /&gt;I know some guys at the TAC can clear the db but not all are doing this.&lt;BR /&gt;&lt;BR /&gt;You can go under the system menu then monitoring and audit, you'll be able to see who did the change and click on the detail to see what change has been done.&lt;BR /&gt;&lt;BR /&gt;If someone has exported the policies, you can re-import then under ACP menu.&lt;BR /&gt;</description>
    <pubDate>Thu, 24 Oct 2019 02:55:57 GMT</pubDate>
    <dc:creator>Francesco Molino</dc:creator>
    <dc:date>2019-10-24T02:55:57Z</dc:date>
    <item>
      <title>How to rollback a change in the policy that has not been deployed on FTD from FMC ?</title>
      <link>https://community.cisco.com/t5/network-security/how-to-rollback-a-change-in-the-policy-that-has-not-been/m-p/3946791#M922925</link>
      <description>&lt;P&gt;I noticed one of the policies on the FMC is out of date i.e not updated/deployed on the Firewall.&lt;/P&gt;&lt;P&gt;I am not aware what changes were done on the policy and I want to avoid going through each and every rule to find that out.&lt;/P&gt;&lt;P&gt;Is there way I can rollback changes on the policy to match with the policy that is already on the firewall ?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 17:37:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-rollback-a-change-in-the-policy-that-has-not-been/m-p/3946791#M922925</guid>
      <dc:creator>damode</dc:creator>
      <dc:date>2020-02-21T17:37:38Z</dc:date>
    </item>
    <item>
      <title>Re: How to rollback a change in the policy that has not been deployed on FTD from FMC ?</title>
      <link>https://community.cisco.com/t5/network-security/how-to-rollback-a-change-in-the-policy-that-has-not-been/m-p/3946878#M922926</link>
      <description>Hi&lt;BR /&gt;&lt;BR /&gt;Unfortunately you can't. This is an existing enhancement request:&lt;BR /&gt;&lt;A href="https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvm28872/?rfs=iqvred" target="_blank"&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvm28872/?rfs=iqvred&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;If you have a backup, you can restore it.&lt;BR /&gt;I know some guys at the TAC can clear the db but not all are doing this.&lt;BR /&gt;&lt;BR /&gt;You can go under the system menu then monitoring and audit, you'll be able to see who did the change and click on the detail to see what change has been done.&lt;BR /&gt;&lt;BR /&gt;If someone has exported the policies, you can re-import then under ACP menu.&lt;BR /&gt;</description>
      <pubDate>Thu, 24 Oct 2019 02:55:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-rollback-a-change-in-the-policy-that-has-not-been/m-p/3946878#M922926</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2019-10-24T02:55:57Z</dc:date>
    </item>
    <item>
      <title>Re: How to rollback a change in the policy that has not been deployed</title>
      <link>https://community.cisco.com/t5/network-security/how-to-rollback-a-change-in-the-policy-that-has-not-been/m-p/4801532#M1099008</link>
      <description>&lt;P&gt;Latest FTD have option to rollback the policy to last working policy&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;configure policy rollback&lt;/STRONG&gt;&lt;BR /&gt;---------------------------------------------------------------------------------------------&lt;BR /&gt;[Warning] Perform a policy rollback if the FTD communicates with the FMC on a data interface, and it has lost connectivity due to a policy deployment from the FMC. If the FTD still has connectivity to the FMC, and you want to perform a policy rollback for other purposes, then you should do the rollback on the FMC and not with this command. Note that there will be a traffic drop when you rollback the policy.&lt;/P&gt;
&lt;P&gt;Checking Eligibility ....&lt;BR /&gt;============= DEVICE DETAILS =============&lt;BR /&gt;Device Version: 7.3.0&lt;BR /&gt;Device Type: FTD&lt;BR /&gt;Device Mode: Offbox&lt;BR /&gt;Device in HA: false&lt;BR /&gt;Device in Cluster: false&lt;BR /&gt;Device Upgrade InProgress: false&lt;BR /&gt;==========================================&lt;BR /&gt;Device is eligible for policy rollback&lt;/P&gt;
&lt;P&gt;This command will rollback the policy to the last deployment done on Mar 26 15:48.&lt;BR /&gt;[Warning] The rollback operation will revert the convergence mode.&lt;BR /&gt;Do you want to continue (YES/NO)? Yes&lt;/P&gt;
&lt;P&gt;Starting rollback...&lt;BR /&gt;Deployment of Platform Settings to device. Status: success&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 26 Mar 2023 16:23:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-rollback-a-change-in-the-policy-that-has-not-been/m-p/4801532#M1099008</guid>
      <dc:creator>pan</dc:creator>
      <dc:date>2023-03-26T16:23:57Z</dc:date>
    </item>
  </channel>
</rss>

