Use this page to manually import a firewall policy from the discovered or onboarded sites (next generation firewall sites).
To import a firewall policy:
The Firewall Policy page appears.
The Import Firewall Policies page appears displaying a list of discovered devices (next generation firewall devices).
The Discovered Services tab appears.
The Resolve Conflicts tab appears.
The resolution options are:
Rename Object—Rename the imported object. By default, "_1" is added to the object name, or you can specify a new name.
Overwrite with imported value—The object in CSO is replaced with the object from the import operation.
Keep existing object—The object name in CSO is used instead of what is on the next generation firewall device.
A summary of the discovered services is listed.
The import policy job is created and the firewall policies are imported from next generation firewall device to CSO. You can view the imported policy from the Firewall Policy page.
After importing the firewall policy successfully, you can edit and deploy the policy. See Editing and Deleting Firewall Policies, Editing, Cloning, and Deleting Firewall Policy Intents, and Deploying Firewall Policies.