Software Secure Firewall Threat Defense
Platform Secure Firewall Threat Defense Virtual
Activity Onboard

Onboard Devices to Cloud-Delivered Firewall Management Center Configuration Deployment Deploy the Configuration Redeploy Existing Configurations to a Device

Last updated: Jul 29, 2025

Redeploy Existing Configurations to a Device

You can force-deploy existing (unchanged) configurations to a single managed device. We strongly recommend you deploy in a maintenance window or at a time when any interruptions to traffic flow and inspection will have the least impact.


 
When you deploy, resource demands may result in a small number of packets dropping without inspection. Additionally, deploying some configurations restarts the Snort process, which interrupts traffic inspection. Whether traffic drops during this interruption or passes without further inspection depends on how the target device handles traffic. See Snort Restart Traffic Behavior and Configurations that Restart the Snort Process When Deployed or Activated.

Before you begin

Review the guidelines described in Best Practices for Deploying Configuration Changes.

Procedure

1

Choose Devices > Device Management.

2

Click Edit (edit icon) next to the device where you want to force deployment.

3

Click Device.

4

Click Edit (edit icon) next to the General section heading.

5

Click Force Deploy (force deploy icon).


 

Force-deploy takes more time than the regular deployment because it involves the complete generation of the policy rules to be deployed on the Firewall Threat Defense.

6

Click Deploy.

The system identifies any errors or warnings with the configurations you are deploying. You can click Proceed to continue without resolving warning conditions. However, you cannot proceed if the system identifies an error.

What to do next