Guidelines for selective policy deployment
The Cloud-Delivered Firewall Management Center allows you to select a specific policy within the list of all the changes on the device that are due for deployment and deploy only the selected policy.
This table describes the policies that suppot selective deployment.
|
Type |
Policy |
|---|---|
|
Access control |
|
|
Threat prevention and inspection |
|
|
Identity and discovery |
|
|
Device or network connectivity |
|
Use the this table to understand the constraints and conditions for applying selective policy deployment.
|
Type |
Description |
Scenarios |
|---|---|---|
|
Full deployment |
Full deployment is necessary for specific deploy scenarios, and the Firewall Management Center does not support selective deployment in such scenarios. If you encounter an error in such scenarios, you may choose to proceed by selecting all the changes for deployment on the device. |
Full deployment is required for:
|
|
Associated policy deployment |
The Cloud-Delivered Firewall Management Center identifies interdependent policies which are interlinked. When one of the interlinked policies is selected, the remaining interlinked policies are automatically selected. |
Scenarios wherein an associated policy is automatically selected:
Scenarios wherein multiple policies are automatically selected:
|
|
Interdependent policy changes (shown using color-coded tags) |
The Cloud-Delivered Firewall Management Center dynamically detects dependencies in-between policies, and between the shared objects and the policies. The interdependency of the objects or policies is shown using color-coded tags. |
Scenarios wherein color-coded interdependent policies or objects are automatically selected:
|
|
Access Policy Group specifications |
Access Policy Group policies are listed together in the preview window under Access Policy Group when you click View ( |
The scenarios and the expected behavior for Access Policy Group policies are:
|
