12-02-2018 04:53 AM - edited 03-12-2019 07:08 AM
Hi All,
Quick question regarding Recurring Rule Updates within FMC. If it tick the 'Deploy Updated Policies to targeted devices' does that mean that the update will be automatically deployed to my FTDs and the Snort Process restarted?
Thanks
Solved! Go to Solution.
12-02-2018 06:20 AM
I've just editted my previous post. Yes they would all be impacted, you can use the Deploy Policy scheduled tasks to schedule the updates and target specific devices. (Leave the automatic deploy SRU checkbox unchecked)
Thanks
12-02-2018 06:22 AM
Hi , If you are running version 6.2.3, then you can configure from cli to preserve the snort connections
configure snort preserve-connection enable
HTH
Abheesh
12-02-2018 06:08 AM - edited 12-02-2018 06:18 AM
Hi - yes it will automatically deploy the updates and there will be detection engine restarts which will disrupt traffic inspection.
You can uncheck that box and create a scheduled task > Deploy Policy. This would allow you to choose the desired time (eg. a maintenance window) and frequency. This would mean if there are 3 SRU updates since the last policy deploy, the FMC would wait to deploy them (culminative).
Thanks
12-02-2018 06:17 AM
Hi,
Thanks for the response. If I have 10 FTDs in my deployment, will these all be impacted at the same time if I configure this? Is there anyway to deploy the updates the the FTDs one by one?
Thanks
12-02-2018 06:20 AM
I've just editted my previous post. Yes they would all be impacted, you can use the Deploy Policy scheduled tasks to schedule the updates and target specific devices. (Leave the automatic deploy SRU checkbox unchecked)
Thanks
12-02-2018 06:22 AM
Hi , If you are running version 6.2.3, then you can configure from cli to preserve the snort connections
configure snort preserve-connection enable
HTH
Abheesh
12-02-2018 06:25 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide