<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Firepower Management Center REST API Submit Snort Rules in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055385#M1007377</link>
    <description>&lt;P&gt;Greetings Cisco Community,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I am looking to automate the process of adding intrusion rules to a Firepower device (FMC version 6.2.0). I was hoping to be able to use the REST API for this purpose, but looking through the documentation, it's unclear to me whether this action is supported.&lt;/P&gt;
&lt;P&gt;Is adding Snort rules via the REST API supported? I apologize if I've overlooked something obvious.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks in advance,&lt;/P&gt;
&lt;P&gt;J&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 14:02:17 GMT</pubDate>
    <dc:creator>jfeild001</dc:creator>
    <dc:date>2020-02-21T14:02:17Z</dc:date>
    <item>
      <title>Firepower Management Center REST API Submit Snort Rules</title>
      <link>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055385#M1007377</link>
      <description>&lt;P&gt;Greetings Cisco Community,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I am looking to automate the process of adding intrusion rules to a Firepower device (FMC version 6.2.0). I was hoping to be able to use the REST API for this purpose, but looking through the documentation, it's unclear to me whether this action is supported.&lt;/P&gt;
&lt;P&gt;Is adding Snort rules via the REST API supported? I apologize if I've overlooked something obvious.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks in advance,&lt;/P&gt;
&lt;P&gt;J&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 14:02:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055385#M1007377</guid>
      <dc:creator>jfeild001</dc:creator>
      <dc:date>2020-02-21T14:02:17Z</dc:date>
    </item>
    <item>
      <title>J,</title>
      <link>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055386#M1007378</link>
      <description>&lt;P style="padding-left: 30px;"&gt;J,&lt;/P&gt;
&lt;P style="padding-left: 30px;"&gt;Today it is not possible to modify or Tune IPS policy with the REST API. To add and adjust Snort rules in Firepower Management Center you must use the UI.&amp;nbsp;&lt;/P&gt;
&lt;P style="padding-left: 30px;"&gt;All you can do with the API and identify and IPS policy and apply it to to rules.&lt;/P&gt;
&lt;P style="padding-left: 30px;"&gt;&lt;/P&gt;
&lt;P style="padding-left: 30px;"&gt;Regards,&lt;/P&gt;
&lt;P style="padding-left: 30px;"&gt;Neil&lt;/P&gt;</description>
      <pubDate>Tue, 14 Mar 2017 16:43:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055386#M1007378</guid>
      <dc:creator>neipatel</dc:creator>
      <dc:date>2017-03-14T16:43:11Z</dc:date>
    </item>
    <item>
      <title>Neil,</title>
      <link>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055387#M1007379</link>
      <description>&lt;P&gt;Neil,&lt;/P&gt;
&lt;P&gt;Thank you very much for your quick reply and the clarification!&lt;/P&gt;
&lt;P&gt;-J&lt;/P&gt;</description>
      <pubDate>Tue, 14 Mar 2017 16:54:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055387#M1007379</guid>
      <dc:creator>jfeild001</dc:creator>
      <dc:date>2017-03-14T16:54:33Z</dc:date>
    </item>
    <item>
      <title>Hi Neil,</title>
      <link>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055388#M1007380</link>
      <description>&lt;P&gt;Hi Neil,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Following on from your response,&amp;nbsp;would it possible to export the SNORT rules using the API?&lt;/P&gt;</description>
      <pubDate>Fri, 19 May 2017 12:25:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055388#M1007380</guid>
      <dc:creator>nwilu0001</dc:creator>
      <dc:date>2017-05-19T12:25:55Z</dc:date>
    </item>
    <item>
      <title>nwilu0001,</title>
      <link>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055389#M1007381</link>
      <description>&lt;P&gt;nwilu0001,&lt;/P&gt;
&lt;P&gt;It is not possible to export the SNORT signature contents for a specific IPS rule with the API. It is only possible to identify and apply the Rule as a whole (By name and system generated GUID) with the API. For visibility into the rule you would again have to use the UI.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Neil&lt;/P&gt;</description>
      <pubDate>Fri, 19 May 2017 12:58:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055389#M1007381</guid>
      <dc:creator>neipatel</dc:creator>
      <dc:date>2017-05-19T12:58:27Z</dc:date>
    </item>
    <item>
      <title>Thank you for replying so</title>
      <link>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055390#M1007382</link>
      <description>&lt;P&gt;Thank you for replying so quickly Neil.&lt;/P&gt;</description>
      <pubDate>Fri, 19 May 2017 14:26:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/3055390#M1007382</guid>
      <dc:creator>nwilu0001</dc:creator>
      <dc:date>2017-05-19T14:26:45Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower Management Center REST API Submit Snort Rules</title>
      <link>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/4003366#M1007383</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;any updates on the subject?&lt;/P&gt;&lt;P&gt;is there an option to upload Snort rules to the FMC using API?&lt;/P&gt;&lt;P&gt;is there a road map for the functionality?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 25 Dec 2019 11:34:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/4003366#M1007383</guid>
      <dc:creator>fredymaiz84543</dc:creator>
      <dc:date>2019-12-25T11:34:45Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower Management Center REST API Submit Snort Rules</title>
      <link>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/4680447#M1093130</link>
      <description>&lt;P&gt;I am curious how this has changed in version 7. I know that I can get the intrusion rules using the FMC API now. It appears that I can also modify rules. Is there the ability to install local rules in bulk using the FMC API now?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Sep 2022 14:56:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/4680447#M1093130</guid>
      <dc:creator>kbliss</dc:creator>
      <dc:date>2022-09-02T14:56:07Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower Management Center REST API Submit Snort Rules</title>
      <link>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/4997709#M1107997</link>
      <description>&lt;P&gt;There is a newer API that allows to create custom snort 3 rules within FMC. You can find it under &lt;SPAN&gt;/object/intrusionrules&lt;/SPAN&gt; in FMC API explorer.&lt;/P&gt;</description>
      <pubDate>Tue, 16 Jan 2024 15:21:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-management-center-rest-api-submit-snort-rules/m-p/4997709#M1107997</guid>
      <dc:creator>osanniko</dc:creator>
      <dc:date>2024-01-16T15:21:29Z</dc:date>
    </item>
  </channel>
</rss>

