Configure access control preferences
You can track changes to access control rules by allowing or requiring users to comment when they save. This allows you to assess why critical policies in a deployment were modified. By default, this feature is disabled.
Configure object optimization to evaluate and optimize network or host policy objects that are used in rules. The system then creates associated network object groups on the device. For more information, refer to Object-group optimization.Procedure
Step 1 | Choose . | ||
Step 2 | From the Comments on rule change list, choose an option:
| ||
Step 3 | From the Object-group optimization list, choose an option:
| ||
Step 4 | Click Save. |
What to do next
Deploy the access control policies for object-group optimization to take effect.