08-15-2024 08:50 AM
Hello,
I'm trying to configure Cisco Secure Firewall ACP File Policy to exclude Windows Updates from being scanned. I inserted an ACP rule just above the rule with the File Policy. It simply allows traffic to Microsoft Updates or Windows Updates with no File Policy. I assumed it would match first and essentially bypass the file policy on the subsequent rule. Apparently this does not work. The update traffic is scanned regardless. Any thoughts how I might accomplish this?
Thanks - David
Solved! Go to Solution.
08-15-2024 03:47 PM
What action of ACP you use trust or allow?
If you use allow the you need to chabge it to trust this will make ACP not deep inspect this traffic
MHM
08-15-2024 03:32 PM
Could you post a screenshot of the rules you have implemented?
08-15-2024 03:47 PM
What action of ACP you use trust or allow?
If you use allow the you need to chabge it to trust this will make ACP not deep inspect this traffic
MHM
08-22-2024 11:03 AM
Everything looks good now. I tweaked the rule config and Windows Update traffic is matching the rule. I did change it to trust as well.
Thanks - David
08-22-2024 11:10 AM
You are so welcome
MHM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide