<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FMC with restricted Internet Connection: Need URLs!! in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3674803#M1040032</link>
    <description>&lt;P&gt;Hi. I haven't been able to find the information.&lt;/P&gt;
&lt;P&gt;We're deploying a new virtual FMC that is going to manage 2 FTD devices (2100). This customer doesn't want to give full Internet access to this machine, they say they want to restrict to certains ports and public IP Addresses.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;How can I find which URLs/Public IP Address we need to consider? I need connection to Smart Licensing, since we will be using Smart Licenses for FTD, and I know FMC also needs to consult to the cloud for AMP analysis, VDB- Snort updates, Security Intelligence, etc.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I appreciate if someone can help us to find out which URLs we need to permit, or how can we approach this!&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 16:01:15 GMT</pubDate>
    <dc:creator>Soporteco</dc:creator>
    <dc:date>2020-02-21T16:01:15Z</dc:date>
    <item>
      <title>FMC with restricted Internet Connection: Need URLs!!</title>
      <link>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3674803#M1040032</link>
      <description>&lt;P&gt;Hi. I haven't been able to find the information.&lt;/P&gt;
&lt;P&gt;We're deploying a new virtual FMC that is going to manage 2 FTD devices (2100). This customer doesn't want to give full Internet access to this machine, they say they want to restrict to certains ports and public IP Addresses.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;How can I find which URLs/Public IP Address we need to consider? I need connection to Smart Licensing, since we will be using Smart Licenses for FTD, and I know FMC also needs to consult to the cloud for AMP analysis, VDB- Snort updates, Security Intelligence, etc.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I appreciate if someone can help us to find out which URLs we need to permit, or how can we approach this!&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 16:01:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3674803#M1040032</guid>
      <dc:creator>Soporteco</dc:creator>
      <dc:date>2020-02-21T16:01:15Z</dc:date>
    </item>
    <item>
      <title>Re: FMC with restricted Internet Connection: Need URLs!!</title>
      <link>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3674810#M1040034</link>
      <description>&lt;P&gt;Required ports and access for the Firepower is documented here:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/security__internet_access__and_communication_ports.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/security__internet_access__and_communication_ports.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;From an allowed URL perspective, I know of a few that the Firepower uses (at least previously):&lt;/P&gt;
&lt;P&gt;support.sourcefire.com&lt;/P&gt;
&lt;P&gt;software.cisco.com&lt;/P&gt;
&lt;P&gt;intelligence.sourcefire.com&lt;/P&gt;
&lt;P&gt;database.brightcloud.com&lt;/P&gt;
&lt;P&gt;service.brightcloud.com&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;My recommendation is to remove the FMC from any access restriction rules. I have had trouble with FMC downloading URL Databases when I put it through existing&amp;nbsp;content filters/proxies etc.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 25 Jul 2018 21:11:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3674810#M1040034</guid>
      <dc:creator>Rahul Govindan</dc:creator>
      <dc:date>2018-07-25T21:11:53Z</dc:date>
    </item>
    <item>
      <title>Re: FMC with restricted Internet Connection: Need URLs!!</title>
      <link>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3674889#M1040035</link>
      <description>thanks a lot Rahul&lt;BR /&gt;&lt;BR /&gt;I had already seen that document, where they explain the reason for Internet access (by feature), but URL's are not included. Unfortunately this customer insists on filtering by domains or Public IP Addresses, but I'm seeing it quite difficult.</description>
      <pubDate>Wed, 25 Jul 2018 23:43:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3674889#M1040035</guid>
      <dc:creator>Soporteco</dc:creator>
      <dc:date>2018-07-25T23:43:36Z</dc:date>
    </item>
    <item>
      <title>Re: FMC with restricted Internet Connection: Need URLs!!</title>
      <link>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3674907#M1040036</link>
      <description>&lt;P&gt;I agree with you, but the only ones I have are the ones below:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;support.sourcefire.com&lt;/P&gt;
&lt;P&gt;software.cisco.com&lt;/P&gt;
&lt;P&gt;intelligence.sourcefire.com&lt;/P&gt;
&lt;P&gt;database.brightcloud.com&lt;/P&gt;
&lt;P&gt;service.brightcloud.com&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you can use wildcard's, then try allowing .cisco, .sourcefire and .brightcloud to the allow list. The problem with static ip addresses is that the content is mostly stored on AWS or on CDN's, which almost always changes.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jul 2018 00:19:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3674907#M1040036</guid>
      <dc:creator>Rahul Govindan</dc:creator>
      <dc:date>2018-07-26T00:19:50Z</dc:date>
    </item>
    <item>
      <title>Re: FMC with restricted Internet Connection: Need URLs!!</title>
      <link>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3674977#M1040037</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Though not consolidated, but&amp;nbsp;all the URL's can be determined in the below 3 documents:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/sourcefire-amp-appliances/118121-technote-sourcefire-00.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/sourcefire-amp-appliances/118121-technote-sourcefire-00.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/118852-technote-firesight-00.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/118852-technote-firesight-00.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/118791-technote-firesight-00.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/118791-technote-firesight-00.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jul 2018 03:12:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3674977#M1040037</guid>
      <dc:creator>Raghunath Kulkarni</dc:creator>
      <dc:date>2018-07-26T03:12:50Z</dc:date>
    </item>
    <item>
      <title>Re: FMC with restricted Internet Connection: Need URLs!!</title>
      <link>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3675606#M1040038</link>
      <description>&lt;P&gt;Thanks a lot, that's very useful.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;However, I'm still worried about the connection to Smart Licensing Portal. FTD devices use Smart Licensing, and FMC will need a connection to the cloud. I've read so many documents about Smart Licensing but none of them give me information about IP addreses or URLs.&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jul 2018 17:29:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3675606#M1040038</guid>
      <dc:creator>Soporteco</dc:creator>
      <dc:date>2018-07-26T17:29:41Z</dc:date>
    </item>
    <item>
      <title>Re: FMC with restricted Internet Connection: Need URLs!!</title>
      <link>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3675924#M1040039</link>
      <description>As far as smart licensing is concerned, we need to make sure that the URL:&lt;BR /&gt; &lt;A href="https://smart-satellite.cisco.com:443" target="_blank"&gt;https://smart-satellite.cisco.com:443&lt;/A&gt; to be resolved by the FMC at any given point in time.</description>
      <pubDate>Fri, 27 Jul 2018 01:25:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3675924#M1040039</guid>
      <dc:creator>Raghunath Kulkarni</dc:creator>
      <dc:date>2018-07-27T01:25:13Z</dc:date>
    </item>
    <item>
      <title>Re: FMC with restricted Internet Connection: Need URLs!!</title>
      <link>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3676394#M1040040</link>
      <description>&lt;P&gt;Hi Raghunat, but that URL is not resolvable, are you sure we need that one?&lt;/P&gt;</description>
      <pubDate>Fri, 27 Jul 2018 16:58:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3676394#M1040040</guid>
      <dc:creator>Soporteco</dc:creator>
      <dc:date>2018-07-27T16:58:35Z</dc:date>
    </item>
    <item>
      <title>Re: FMC with restricted Internet Connection: Need URLs!!</title>
      <link>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3840352#M1040041</link>
      <description>&lt;P&gt;Hi Raghunath.&lt;BR /&gt;Good solution to resolve the internet restrictions in FMC server and use smartlicense. But this no resolve the fact that we need to have the FMC witch internet connection to have a database updated, receive feeds right?&lt;/P&gt;</description>
      <pubDate>Wed, 17 Apr 2019 14:02:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3840352#M1040041</guid>
      <dc:creator>Tiago Andrade de Paula</dc:creator>
      <dc:date>2019-04-17T14:02:42Z</dc:date>
    </item>
    <item>
      <title>Re: FMC with restricted Internet Connection: Need URLs!!</title>
      <link>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3897313#M1040042</link>
      <description>&lt;P&gt;The URL&amp;nbsp;&lt;A href="https://smart-satellite.cisco.com/" target="_blank" rel="nofollow noopener noreferrer"&gt;https://smart-satellite.cisco.com:443&lt;/A&gt; is not accessible.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is this URL is mandatory or Is there any other URL instead of this ?&lt;/P&gt;</description>
      <pubDate>Thu, 25 Jul 2019 07:22:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/3897313#M1040042</guid>
      <dc:creator>lingesha.ts</dc:creator>
      <dc:date>2019-07-25T07:22:39Z</dc:date>
    </item>
    <item>
      <title>Re: FMC with restricted Internet Connection: Need URLs!!</title>
      <link>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/4031928#M1040043</link>
      <description>&lt;P&gt;You can check the link :&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/security__internet_access__and_communication_ports.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/security__internet_access__and_communication_ports.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Feb 2020 02:40:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-with-restricted-internet-connection-need-urls/m-p/4031928#M1040043</guid>
      <dc:creator>isaac_ferreira</dc:creator>
      <dc:date>2020-02-19T02:40:47Z</dc:date>
    </item>
  </channel>
</rss>

