I created a web content rule underneath a policy that does an interactive block on certain web categories. I tested it last week and it worked as expected. I randomly did a test this morning while watching the real-time monitoring and it showed the action was an "Interactive Block" but from my test machine, it was still easily browsing all the content on what was showing as being blocked in the event log.
The status showed the policy was up to date on the device and applied. I put a description in for the name of the policy and reapplied it. Once it was applied I tested the same site from the same device and now it was correctly blocking the site.
I went back a few minutes later and tested again and now it is allowing the same site through while showing in the log that it is doing an interactive block.
This is on a 5506-X and at the latest version of everything.
Can anyone explain this result or should this be a TAC case?