Enable Policy Analyzer and Optimizer for CDO-managed On-Prem Firewall Management Center

If you have an On-Prem Firewall Management Center Version 7.2 or later, integrate it with SecureX, onboard your on-prem management center to CDO, navigate to Tools & Services > Firewall Management Center, select the on-prem management center, and choose Policy Analyzer and Optimizer under System in the right pane. See Onboard an On-Prem Firewall Management Center for more information.

If you have an on-prem management center Version 7.6 and want to use Policy Analyzer and Optimizer, follow the steps below:

Procedure


Step 1

In your on-prem management center, navigate Integration > Cisco Security Cloud.

Step 2

If you have not integrated your on-prem management center with Cisco Security Cloud, click Enable Cisco Security Cloud and follow the steps. To authorize the cloud integration, you must choose an existing CDO tenant or provision a new one, to which your on-prem management center will get onboarded, after the cloud integration is successful.

Step 3

After integrating your on-prem management center with Cisco Security Cloud, check the Enable Policy Analyzer and Optimizer checkbox and click Save.

Step 4

Go to Policies > Access Control.

Step 5

Select a policy and click Analyze Policy. Note that the Anomaly column displays In Progress and once the analysis is complete, it displays the number of anomalies and the percentage of the policy optimizable.

Step 6

Click on the percentage to be cross-launched to the Policy Analyzer and Optimizer page in the CDO tenant to which your on-prem management center is registered.

Step 7

Alternatively, go to Tools & Services > Firewall Management Center, select the on-prem management center, and choose Policy Analyzer and Optimizer from the right pane.