Use the CLI commands in this topic to enable or disable the Central Management System Peer Distributed Correlation and CM Peer Signature Sharing features of the Central Management System Peer Service on each Central Management System peer. When you enable each Central Management System peer, all the features are enabled. When you disable the Central Management System Peer Service, Central Management System peers can no longer interact with your Central Management System appliance. However, you can enable or disable access to the Central Management System Peer Distributed Correlation and Central Management System Peer Signature Sharing features individually on each CM peer.
Each administrator must verify the Central Management System Peer Service connection to all Central Management System peers. A status refresh is triggered in the following instances:
Periodically every 1 to 5 minutes. Different interactions and different peers can be refreshed at different 1—minute to 5—minute intervals.
Whenever any peer service configuration changes (for example, a new token is imported, a feature on a Central Management System peer is disabled, and so on).
When Central Management System high availability (HA) failover occurs (when the secondary node becomes the new primary node). For information about how the Central Management System Peer Service (and associated features) works in a HA configuration, refer to the Central Management System High Availability Guide.
The status might display "UNKNOWN" temporarily until the status is retrieved at the beginning of the refresh cycle.
Note
You can enable or disable the Central Management System Peer Service features on each Central Management System peer only using the CLI.
Admin access to the Central Management System appliance.
A connection to the Dynamic Threat Intelligence (DTI) Cloud.
Network connectivity over SSH (port 22) and HTTPS (port 443) must be allowed on each of the participating Central Management System appliances.
Central Management System Peer Service must be enabled on each of the participating Central Management System appliances.
Authentication tokens must be exchanged for communication between Central Management System peers.