Forum Discussion
AFM Firewall Policy Export / Import
Hi,
Just want to ask if anyone have the same experience on how to export (viprion) and import (velos) firewall policy?
Thanks in advance,
Tony
- F5-Enthusiast-XAltocumulus
Hello T0nyP,
the underlaying plattform/Hardware is not important at this step.
It seems you are just want to "copy" your afm policies from your viprion GUEST to a new velos TENANT.
Since AFM is not yet ported to BIGIP Next, I expect you mean an BIGIP Classic tenant which is just like a viprion guest.
so you have all abilities bigip offers you on both plattforms.
About AFM Policies:
I dont know any "export" Button to do this.
My first try would be via CLI TMSH / Plane Configuration files
of course addressing the underlaying dependencies Nikoolayy1 mentioned like VLANs and Objects
Also if the rules use zones, address lists or port lists (shared objects) then they probably should be on Velos before the policy being imported but then you will see this issue even if you do policy export and import from one Viprion to another maybe if you have test one.
Do you have any issues to ask this question? If the rules use vlans then the same vlans should exist in Velos like in Viprion but outside of that the AFM rules are not related to blade or platform from what I have seen, so if you make the Velos and VIPRION be the same version, you should not have issues in my opinion.
Outside of that if you are migrating between VIPRION and VELOS better use the migration tool:
Migrate your BIG-IP Configuration using F5 Journeys App (youtube.com)
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com