Deploying Policies
You can deploy firewall, NAT, SD-WAN, and SSL proxy policies added by various services immediately or schedule the deployment for a later date and time.
To configure a deployment:
- You can initiate the deployment of a policy in the following
ways:
Select a policy from the Awaiting Deployment tab on the Deployments page and click Deploy.
Select a policy from the Scheduled tab on the Deployments page and click Deploy.
Select a policy from the Scheduled tab on the History page and click Re-Deploy.
Use the deployment icon on the Customer Portal banner. For more information about deploying policies using the deployment icon, see Using the Deployment Icon to Deploy Policies.
Note The deployment icon is highlighted in orange if there are undeployed policies.
Select Configuration > Firewall > Firewall Policy. The Firewall Policy page appears, displaying the intents associated with the policy. Click Deploy.
Select Configuration > NAT > NAT Policies and select the NAT policy you want to deploy. Click Deploy.
Select Configuration > SSL Proxy > Policy. The SSL Proxy Policy page appears, displaying the intents associated with the policy. Click Deploy.
Select an SD-WAN policy intent on the SD-WAN Policy page and click Deploy.
- The Deploy page appears. In Choose Deployment
Time options, select Run Now to deploy the policy
immediately.
Select Schedule at a later time to deploy the policy at a later date and time. For scheduling options, see Table 1.
- Click Deploy.
Table 1 provides guidelines on using the fields on the Deploy page.
Table 1: Fields on the Deploy Page
Field | Description |
---|---|
Summary | |
Policies | The summary of the policy that is to be deployed. |
Choose Deployment Time | |
Type |
|
If a tenant with the SD-WAN Advanced service selects an SLA or cloud-based profile for both SD-WAN Essentials and Advanced sites, the SD-WAN deploy job fails indicating the intents that failed for the SD-WAN Essentials sites. The intents are added to the SD-WAN Advanced sites.