<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: setting up firepower module, question about interfaces in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225901#M1013864</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326072"&gt;@johnlloyd_13&lt;/a&gt;&amp;nbsp;&lt;STRIKE&gt;note that the question was about the 5585-X. Those are a bit different in that they use a hardware module. As Micke noted, connectivity is via interface management 1/1 - e.g. the interface on the Firepower SSP module in slot 1.&lt;/STRIKE&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;(corrected information below - Thanks John)&lt;/P&gt;</description>
    <pubDate>Sun, 03 Dec 2017 02:32:02 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2017-12-03T02:32:02Z</dc:date>
    <item>
      <title>setting up firepower module, question about interfaces</title>
      <link>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225024#M1013858</link>
      <description>&lt;P&gt;Hi all&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'm in the process of upgrading the firepower software on a Cisco 5525-X. I have updated the boot firmware to 6.2.2. Once I get into the module using the module sfr command i then enter setup to configure the ip address for the firepower module.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;My question is, what physical interface on the firewall is this ip address binded to? does the firepower ip address have to be in the same subnet as the inside interface ip?&amp;nbsp; Once i can get the firepower talking to filezilla server, i can then upgrade the rest.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 14:52:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225024#M1013858</guid>
      <dc:creator>faghouri83</dc:creator>
      <dc:date>2020-02-21T14:52:31Z</dc:date>
    </item>
    <item>
      <title>Re: setting up firepower module, question about interfaces</title>
      <link>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225032#M1013860</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;The firepower ip address configured at setup is bound to Management 1/1.&lt;BR /&gt;Don't think they need to be in the same subnet as inside, but it makes things easier.&lt;BR /&gt;You will only access the Firepower module through the Management port, asa configuration must be access from inside or an extra oob management port.&lt;BR /&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/quick_start/5500X/5500x_quick_start.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/quick_start/5500X/5500x_quick_start.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;br, Micke</description>
      <pubDate>Thu, 30 Nov 2017 12:52:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225032#M1013860</guid>
      <dc:creator>mikael.lahtela</dc:creator>
      <dc:date>2017-11-30T12:52:56Z</dc:date>
    </item>
    <item>
      <title>Re: setting up firepower module, question about interfaces</title>
      <link>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225072#M1013862</link>
      <description>&lt;P&gt;Thanks for the answer. I shall give it a go.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Nov 2017 14:01:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225072#M1013862</guid>
      <dc:creator>faghouri83</dc:creator>
      <dc:date>2017-11-30T14:01:10Z</dc:date>
    </item>
    <item>
      <title>Re: setting up firepower module, question about interfaces</title>
      <link>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225805#M1013863</link>
      <description>&lt;P&gt;hi,&lt;/P&gt;
&lt;P&gt;the FP module logical eth0 interface is binded to the ASA chassis management0/0 interface.&lt;/P&gt;
&lt;P&gt;both the FP module interface and ASA management interface can be on the same subnet (for IP design ease) BUT the management functions are separate. meaning, you SSH/ASDM to ASA management0/0 IP while you use the FP module IP for FMC device registration.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;here's a useful link for the ASA FP module upgrade process.&lt;/P&gt;
&lt;P&gt;&lt;A href="http://ccnpsecuritywannabe.blogspot.com/2017/09/cisco-asa-firepower-module-upgrade.html" target="_blank"&gt;http://ccnpsecuritywannabe.blogspot.com/2017/09/cisco-asa-firepower-module-upgrade.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 02 Dec 2017 03:02:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225805#M1013863</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2017-12-02T03:02:10Z</dc:date>
    </item>
    <item>
      <title>Re: setting up firepower module, question about interfaces</title>
      <link>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225901#M1013864</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326072"&gt;@johnlloyd_13&lt;/a&gt;&amp;nbsp;&lt;STRIKE&gt;note that the question was about the 5585-X. Those are a bit different in that they use a hardware module. As Micke noted, connectivity is via interface management 1/1 - e.g. the interface on the Firepower SSP module in slot 1.&lt;/STRIKE&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;(corrected information below - Thanks John)&lt;/P&gt;</description>
      <pubDate>Sun, 03 Dec 2017 02:32:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225901#M1013864</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-12-03T02:32:02Z</dc:date>
    </item>
    <item>
      <title>Re: setting up firepower module, question about interfaces</title>
      <link>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225968#M1013865</link>
      <description>&lt;P&gt;hi marvin,&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;OP said it was for a 5525-X. look closely further above &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;"I'm in the process of upgrading the firepower software on a Cisco &lt;FONT color="#FF0000"&gt;5525-X.&lt;/FONT&gt;"&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 03 Dec 2017 01:58:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225968#M1013865</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2017-12-03T01:58:14Z</dc:date>
    </item>
    <item>
      <title>Re: setting up firepower module, question about interfaces</title>
      <link>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225969#M1013866</link>
      <description>&lt;P&gt;Oh - sorry about that John. You are right. Time to get my glasses checked. &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;On the ASA 5525-X the Firepower module indeed uses interface Management 0/0. That applies to the 5512-X, 5515-X, 5525-X, 5545-X and 5555-X.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/hw/maintenance/5500xguide/5500xhw/asa_overview.html#58700" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/hw/maintenance/5500xguide/5500xhw/asa_overview.html#58700&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;On the 5506-X, 5508-X and 5516-X they number the sole management interface "Management 1/1".&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The 5585-X has two management interfaces - Management 0/0 on the base ASA and Management 1/0 on the SSP. The latter is used for the Firepower SSP.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/hw/maintenance/5500xguide/5500xhw/asa_overview.html#58700" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/hw/maintenance/5500xguide/5500xhw/asa_overview.html#58700&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 03 Dec 2017 02:31:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/setting-up-firepower-module-question-about-interfaces/m-p/3225969#M1013866</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-12-03T02:31:00Z</dc:date>
    </item>
  </channel>
</rss>

