Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
stalker802
Explorer

Policy verification failed

Hi,

I got a message when verifying rules: Rule x hides rule y for Services and Applications z.

In one rule there is source IP and destination 4 IP's. In other rule there are network groups. Source network group includes source IP from other rule. However there is no 4 destination IP's in other destination network group object. There is no reason for verification to fail. What could be the problem? Version R77.10.

0 Kudos
2 Replies
PhoneBoy
Admin
Admin

In general, you will get this error message when the same source, same destination, and same service are used in more than one rule.
Without seeing the precise rules in question, and an inventory of the objects in question, it's difficult to say why this is happening.
Or it could simply be a bug.
If that's the case, your only recourse is to upgrade since R77.10 has been End of Support for several years now.


0 Kudos
JozkoMrkvicka
Authority
Authority

As dirty and nasty workaround, try to move affected lower "y" rule above affected upper "x"rule.

Kind regards,
Jozko Mrkvicka
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events