Hi,
Bit of an architectural question. I am trying to understand the relationship between the FTD User Agent as deployed on a domain controller, and FMC in the context of of a single FMC deployment and that FMC failing.
The documentation suggests the User Agent communicates directly with the FMC. This being the case what happens to identity base rules on the enforcement point, do they continue to function with previously seen identify information or do they fail?
I am planning to lab this scenario, but before I do I am curious if there is some documentation I am missing.
Is this correct?
Thanks