Who rated this post

cancel
Showing results for 
Search instead for 
Did you mean: 
PhoneBoy
Admin
Admin

There are only three instances where an Access Policy installation is required when making Threat Prevention configuration changes:

  • Very first policy installation on gateway (Threat Prevention requires an Access Policy to be installed)
  • When Inspection Settings are edited
  • When a "Core Protection" is edited 

The reason this is necessary is because Core Protections and Inspection Settings are actually implemented in the firewall code.
Changes to that configuration require an Access Policy installation.

When you edit a Core Protection, SmartConsole explicitly warns you of this:

image.png

Same with editing Inspection Settings:

 

image.png

If you've identified something outside of the above circumstances, I suggest involving TAC.

View solution in original post

0 Kudos
(1)
Who rated this post