Troubleshooting Threat Policies and Policy Enforcement Groups
This section lists some common issues found with threat policies and policy enforcement groups.
You create a threat policy but don’t see the appropriate profiles to choose.
Select Administration > PE Settings and make sure the correct mode has been selected. You can only change the mode in the follow order: Cloud Feed Only to SKY ATP to SKY ATP with PE.
Assigning a threat policy to a policy enforcement group in the Sky ATP with PE mode.
Threat policies are enforced and pushed to devices that support the given profile. If a device is not supported by a profile, it will be listed in the analysis results and in the Junos Space job details.
You create a policy enforcement group with an IP address subnet but no IP addresses are listed in the GUI.
Make sure that a switch is assigned to the site and that the L3 interfaces are configured on the aggregate switch.