Conflict detection
Conflict detection is a monitoring feature that
-
polls devices at regular intervals to identify configuration changes made outside of Security Cloud Control
-
changes the device configuration status to Conflict Detected when out-of-band changes are identified, and
-
stops polling when there are staged changes and the device is in Not Synced state for On-Premises Firewall Management Center devices.
Out-of-band changes and conflict states
Changes made to a device outside of Security Cloud Control are called "out-of-band" changes.
In the case of an On-Premises Firewall Management Center that is managed by Security Cloud Control, if there are changes that are staged and the device is in Not Synced state, Security Cloud Control stops polling the device to check for changes. When there are changes made outside Security Cloud Control which are pending to be synchronized with Security Cloud Control and changes made in Security Cloud Control which are pending to be deployed to the On-Premises Firewall Management Center, Security Cloud Control declares the On-Premises Firewall Management Center to be in the Conflict Detected state.
Once this option is enabled, you can configure how often conflicts or OOB changes are detected per device. See Schedule polling for device changes for more information.