Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Updating and deploying Clientless Access policy via SFM removes Identity/Policy Members defined on devices themselves.

Updating and deploying Clientless Access policy via SFM removes Identity/Policy Members defined on devices themselves. Since SFM can't be used to define those Policy members, how are policy members supposed to be managed? In SFM the only Policy Member options are "Open Group" and "Guest Group" but we need to define members by Active Directory group membership.



This thread was automatically locked due to age.
  • Hi Ken,

    While updating and deploying Clientless Access policy via SFM, on schedule page below, you are selecting override configuration option to yes or no?

    • If you select the override config option to yes, then on XG side configuration will be overwrite.
    • If you select override config option to no, then on XG side configuration will be append.

    SFM does not support import AD users from SFM group level for policy configuration, rule assignment, etc.

    Ravi