Skip to main content

Getting Started with the Illumio Console

Overview of Conflicted Rules

Within All Policies > Application Polices and the Cloud > Application > Policy tab, Illumio Console now indicates if a rule in a policy has a conflict with another rule in the policy. If there is a conflict, a warning information icon displays at the end of the row for that rule. A conflicted rule means that there are rules for your application that contradict each other. For example, someone else may have written an Allow rule that will permit traffic that you do not want to allow, and this rule is overriding the Deny rule that you want to enforce.

When you click the icon, the Conflicted Rules pane displays the reference rule that you clicked at the top of the pane, and provides more information about the rule conflicts for the application:

  • For Override Deny rules, the pane shows the Allow rules that are overriding the subject rule.

  • For Allow rules, the pane shows the Override Deny rules that are overriding the subject rule.

  • For Deny rules, the pane shows the Allow rules that are overriding the subject rule.