Hi Guys
If we have a Network policy pushed from Firesight to ASA and it has got a local policy applied on the interface, which would take precedence ?
Also is there any way we could check on the ASA what policy it has received from Firesight ?
Marvin
Thank you so much that makes it really clear. One more question just to double check, if we have Firepower Access-control policy we really don't need ASA ACE ? I don't see advantage of filtering something twice ?