Edit the Access Control Policy
You'll create a temporary access control policy to allow all traffic, with no inspection, from the inside network to the outside network to test the following:
-
A client connected to the inside network can connect to the internet.
-
Traffic is being filtered through the Firepower Threat Defense device. (The managed device should "see" all the traffic even if it's not being filtered.)
Before you begin
Make sure you have completed all other tasks discussed in this guide before continuing.
Procedure
Step 1 |
In the Firepower Management Center, click . |
Step 2 |
Click (edit) next to Initial Policy. |
Step 3 |
Click Add Rule. |
Step 4 |
Enter the following information in the Add Rule dialog box: |
Step 5 |
Click the Logging tab. |
Step 6 |
Check Log at end of connection. |
Step 7 |
Click Add. |
Step 8 |
On the Initial Policy page, from the Default Action list, click Intrusion Prevention: Balanced Security and Connectivity. |
Step 9 |
Next to the list, click (logging). |
Step 10 |
Check Log at end of connection. |
Step 11 |
Click OK. |
Step 12 |
At the top of the page, click Save. |
Step 13 |
Deploy the changes: |
What to do next
See Test the System.