cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
253
Views
1
Helpful
2
Replies

Cisco Firepower Security Intelligence Question

tsanford
Level 1
Level 1

Hello All, 

This question may have already been answered, however I didn't see this question asked specifically in other forums or documentation (I may not have looked well enough). Apologies if this is a duplicate. 

I understand the inspection chain on the firepower goes prefilter > security intelligence > ACP. If an IP, URL or domain is added to a do-not-block list in security intelligence, is that item exempt from additional inspection/access control done further down the chain such as ACP rules, file policy and IPS/IDS? 

Thanks in advance for any responses! 

- Trevor

1 Accepted Solution

Accepted Solutions

No it will continue inspect in snort 

MHM

View solution in original post

2 Replies 2

No it will continue inspect in snort 

MHM

Thank you! 

Review Cisco Networking for a $25 gift card