Out-of-band configuration detection
Out-of-band configuration detection
-
enables select configuration changes directly at the device CLI when you lose the management connection to your device
-
allows restoration of the management connection if you are using a data interface for manager access
-
detects configuration changes on the device after the management connection is restored, requiring manual acknowledgment and synchronization with the Cloud-Delivered Firewall Management Center.
Configuration change purposes
If you lose the management connection to your device, you can make select configuration changes directly at the device CLI to:
-
Restore the management connection if you are using a data interface for manager access
-
Make select configuration changes that can't wait until the connection is restored
Caution | You are expected to know the commands that are required for recovery or emergency use. Do not use this feature to experiment with configuration changes. If you do not know which commands are required or are unsure about the effect of a command, we recommend that you contact Cisco TAC for guidance. |
After the management connection is restored, the Cloud-Delivered Firewall Management Center will detect the configuration changes on the device. It does not automatically update the device configuration in the Cloud-Delivered Firewall Management Center.You must view the configuration differences, acknowledge that the device configuration differs, and manually apply the same changes in the Cloud-Delivered Firewall Management Center before deploying.
Caution | When you deploy after acknowledgment, any configurations not present in the Cloud-Delivered Firewall Management Center configuration will be overwritten on the device. |