<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Disable Security Intelligence on FTD Access Control Policy in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/disable-security-intelligence-on-ftd-access-control-policy/m-p/3401037#M923751</link>
    <description>&lt;P&gt;This might sound strange but I want to have a policy on a 2110 FTD Appliance that does not use Security Intelligence.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The firewall is an internal device that is used to screen PCI users from the rest of the network, as such it is not able to communicate with the outside world - so I don't need the DNS scannig features - also I haven't bought a threat license for the devices.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have deleted the DNS Feeds but it still seems to want to use this.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is it possible to remove the Security Intelligence section completely - or is this a way to force you to buy a threat policy for every firewall?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Giles&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 15:53:32 GMT</pubDate>
    <dc:creator>bgl-group</dc:creator>
    <dc:date>2020-02-21T15:53:32Z</dc:date>
    <item>
      <title>Disable Security Intelligence on FTD Access Control Policy</title>
      <link>https://community.cisco.com/t5/network-security/disable-security-intelligence-on-ftd-access-control-policy/m-p/3401037#M923751</link>
      <description>&lt;P&gt;This might sound strange but I want to have a policy on a 2110 FTD Appliance that does not use Security Intelligence.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The firewall is an internal device that is used to screen PCI users from the rest of the network, as such it is not able to communicate with the outside world - so I don't need the DNS scannig features - also I haven't bought a threat license for the devices.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have deleted the DNS Feeds but it still seems to want to use this.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is it possible to remove the Security Intelligence section completely - or is this a way to force you to buy a threat policy for every firewall?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Giles&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:53:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disable-security-intelligence-on-ftd-access-control-policy/m-p/3401037#M923751</guid>
      <dc:creator>bgl-group</dc:creator>
      <dc:date>2020-02-21T15:53:32Z</dc:date>
    </item>
    <item>
      <title>Re: Disable Security Intelligence on FTD Access Control Policy</title>
      <link>https://community.cisco.com/t5/network-security/disable-security-intelligence-on-ftd-access-control-policy/m-p/3401091#M923752</link>
      <description>&lt;P&gt;Hi Giles,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You can't remove the Security intelligence tab/option. If you don't wish to use it, remove all the categories from blacklists which will make sure nothing is blocked by this feature.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2018-06-18 at 6.13.55 PM.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/13380iBA7B9D055B177F16/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2018-06-18 at 6.13.55 PM.png" alt="Screen Shot 2018-06-18 at 6.13.55 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For the DNS policy, use the default one and edit the policy and rules and disable both blacklist and whitelist.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope it helps,&lt;BR /&gt;Yogesh&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 12:46:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disable-security-intelligence-on-ftd-access-control-policy/m-p/3401091#M923752</guid>
      <dc:creator>yogdhanu</dc:creator>
      <dc:date>2018-06-18T12:46:22Z</dc:date>
    </item>
    <item>
      <title>Re: Disable Security Intelligence on FTD Access Control Policy</title>
      <link>https://community.cisco.com/t5/network-security/disable-security-intelligence-on-ftd-access-control-policy/m-p/3401276#M923753</link>
      <description>&lt;P&gt;HI Yogesh&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;That almost completely worked, I don't have any license errors on the FTD policy but I now have the firewalls complaining that the feeds (which they are not using are out of date). Any idea on how to clear this one out (the firewalls were on eval before I licensed them). The only thing I can think is to remove the policies and this may cure the issue if I re-apply them. I think during eval they ran with all the features enabled.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Giles&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="Capture.PNG" style="width: 686px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/13397i48478F90A15B71DC/image-size/large?v=v2&amp;amp;px=999" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:51:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disable-security-intelligence-on-ftd-access-control-policy/m-p/3401276#M923753</guid>
      <dc:creator>bgl-group</dc:creator>
      <dc:date>2018-06-18T15:51:03Z</dc:date>
    </item>
  </channel>
</rss>

