12-27-2024 10:53 PM
Hello Community,
I am currently facing an issue with my FMC, where my L7 IPS license has expired, preventing me from deploying my rules to the FPR. I’ve heard that I could potentially deploy the rules by disabling all L4-L7 functions.
Where can I check to ensure that all L4-L7 functionalities have been turned off?
Additionally, I came across an option under Firewall Policy Editor > Advanced > Detection Enhancement Settings called "Adaptive Profiles". Will disabling this affect my ability to deploy rules without a valid license? If so, would it cause any network disruptions when disabling this feature?
Thanks in advance for your help!
12-27-2024 11:15 PM
Deploying rules without a valid license can lead to issues, so make sure you have the right licenses in place.
12-27-2024 11:24 PM
this was already answered by someone else for the same question. why are you asking again ? here was the response from Marvin:
It depends how your rules are setup. At a minimum, you would need to disable the IPS policy on all ACP rules ("shield" icon on each rule entry). You would also need to disable any rules using apps (vs. ports and protocols). Then disable the Intrusion license under the managed device. Save and try to deploy again.
Also, there should be no disruptions in the traffic.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide