Known Issue in 23.2.23-VEN
False positive firewall tampering error (EYE-113892)
If the PCE pushes policy that is identical to existing policy already on the VEN, the more recent policy is not applied and the existing policy remains in the current directory. This results in the current directory and the runtime firewall having different policy IDs. Because the VEN interprets this difference as firewall tampering, it generates a tampering error. This is expected behavior. Workaround: Restart or suspend/unsuspend the VEN manually or through PCE Web Console. The VEN flushes the existing rules and then applies the rules in the current directory.