Policy Migration and Deployment Process

Prev Next

After upgrading your Endpoint Security (HX) server to version 4.7, the policy migration process takes only a few minutes to complete.

Important

Policy requests will fail while the policy migration process is in progress.

After the policy migration completes, all agent configurations are updated with the new configuration mappings. The new agent configuration file is deploy to agents on your host endpoints. The total time it takes for the Endpoint Security (HX) server to deploy new agent configuration to all of your host endpoints, depends on the number of host endpoints in your environment. This process may take up to an hour in an environment with 100,000 agents.Your agents will continue to use the existing configuration until they are updated with the new configuration.

Policy Deployment Considerations

Consider the following policy deployment requirements when assigning policies to host sets.

  • When a host endpoint provisions with your Endpoint Security (HX) server for the first time, it will receive the Agent Default Policy if it is not assigned to a host set group. If the new host is assigned to a host set group, it will receive the Agent Default Policy and any custom or migrated policies assigned to the host set.

  • When you change the host set assignment for an endpoint, a new agent configuration is sent to the endpoint.

  • To apply a custom policy to one host endpoint, you must first create a host set for the endpoint and then assign the custom policy.