Once enabling Cloud Firewall Service (CFS) and running WSSA 9.8.1 after reconnect it takes 15 minutes to activate back CFS.
It is seen in WSS Agent Support Diagnostic log (GUI).
The same test is done over SEP 14.3 and issue remain.
ATM rules applied are not taking an affect immediately after WSS reconnect.
SEP version is 14.3 RU9
WSSA 9.8.1
Cloud Firewall Services (CFS) enabled
ATM rule:
Sources - Domain\user, Verdict - Intercept, Services/Ports "All TCP and UDP ports"
This is a known issue.
SESC/SEP (SEP14) is using older version of the WSSA libraries.
Those libraries will not be updated but the fix is included in ESA (Endpoint Security Agent) which is available for SESC/SEP(SEP16) users that are managed by ICDM.
WSSA 9.8.2 fix delivered.