IDP Series Configuration Requirements for Deployments with SA Series SSL VPN and IC Series Unified Access Control Appliances
To avoid issues with integration:
- Log suppression for the IDP Series appliance must be disabled. The coordinated threat control solution depends on notification of each event to the SA Series appliance. If log suppression is enabled, the IDP Series appliance might report only one occurrence for numerous virtual connections coming through the SA Series appliance.
- Relevant security policy rules must have logging enabled (configure notification options).
- IP actions (such as IP Block and IP Close) are not advised in policies that examine traffic from an SA Series or IC Series appliance. Closing or blocking a connection based on IP address might shut down numerous VPN sessions.

