can we push dns security enabled anti-spyware profile to panos 8.1

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

can we push dns security enabled anti-spyware profile to panos 8.1

L3 Networker

We are managing 4 location firewalls from Panorama. Panorama  and one of the location is on 9.0.9-h1. Rest of the location firewalls are on 8.1.5.

We have activated DNS security licence on that upgraded firewall which is running on panos 9.0.9-h1.

We are using shared anti-spyware profile for all firewalls. If we enable DNS security setting in same anti-spyware profile from panorama and pushed in all devices , is there any impact or commit issue on firewalls which are running on 8.1.5 ?

1 REPLY 1

L4 Transporter

This shouldn't be a problem at all.

The firewall may get a commit warning, but that's not a problem.

With url-filtering profile you will get the same behavior, because http2 decoder isn't present with 8.1 either.

 

Best Regards
Chacko
  • 1868 Views
  • 1 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!