cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Bookmark
|
Subscribe
|
2641
Views
5
Helpful
2
Replies

Secure Endpoints (AMP) Policy Updates

rcarmack1
Level 1
Level 1

Hello,

One thing I found with Secure Endpoints policy updates is that the connector will only update the policy, if the serial number is higher than the policy serial number on the connecter.  If you make changes to an exclusion, allow, block list, the serial number does not update.  You actually have to go into the policy and make a change to increase the serial number so the connection will update on it's next heartbeat check.

 

I assume it's not possible to have the policy automatically update the serial number when a change is made to a list?

 

Thanks

Ron

2 Replies 2

Wojciech Cecot
Cisco Employee
Cisco Employee

Hello,

Changes in exclusion lists that are associated with policy will increase its serial number (just tested in my lab). Changes in Allowed and Blocked Applications lists will not impact serial number of policy, while those details are stored in cloud - in other words those are not part of policy update.

-Wojciech

Thanks for checking and posting your reply. That the same results I’m seeing.