cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
678
Views
0
Helpful
1
Comments
mhmservice
Level 1
Level 1

Hi all

I've been having a major problem with Object Groups in FMC access policies

If I have a pre-existing line in a policy with an Object Group which contains a list of IPs, if I add an additional IP to that object group, then deploy, the traffic is still blocked

In order to fix the issue I have to copy and paste the lien in the policy, delete the old one, and then deploy again (basically create the policy entry in a faster way)

Does anyone have any ideas on why this might happen?

FMC is on version  6.6.1 (build 91) and it seems to affect all our FTD devices but the majority are ASA5506x running 6.2.3.12

Any advice greatly appreciated

1 Comment
mhmservice
Level 1
Level 1

After struggling with this problem for a long time, finally saw this bug logged:

 

URL is not updated in the access policy URL filtering rule
CSCvw85377
 
Updated FMC to 6.6.3 and our issue is solved
 
Better late than never...
 
 
 
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: