<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FMC Managing a cluster of Firewalls in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-managing-a-cluster-of-firewalls/m-p/4470492#M1083854</link>
    <description>&lt;P&gt;Great, that looks like what I am after...Thank you for taking the time!&lt;/P&gt;</description>
    <pubDate>Tue, 21 Sep 2021 06:56:26 GMT</pubDate>
    <dc:creator>Steve_etc</dc:creator>
    <dc:date>2021-09-21T06:56:26Z</dc:date>
    <item>
      <title>FMC Managing a cluster of Firewalls</title>
      <link>https://community.cisco.com/t5/network-security/fmc-managing-a-cluster-of-firewalls/m-p/4470278#M1083846</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Looking for a little direction if possible.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have four Firepower firewalls along an edge at different locations sharing an ACL policy and NAT policy on the FMC. So we make a change in the policy, it is pushed to all four Firewalls.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;However, there are a handfull of rules that are specific to each Firewall only (and not the others). Say for example, each has it's own specific DMZ which aren't in the same zone/IG as the other firewall interfaces. Now, when I add those rules specific to only one Firewall into the policy and try to push the policy to all Firewalls, I get the "this policy references interface not applicable to this firewall" error (words to that effect) which makes total sense.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So what would be best practice in this instance? Ideally, I would like to be able to apply multiple policies to each Firewall...one policy all four firewall have, then a single policy for each of the firewalls containing only the 'locally significant' stuff, but that doesn't seem like a thing.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any advice (such as read about xxxx) would be greatly appreaciated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;P&gt;Steve&lt;/P&gt;</description>
      <pubDate>Mon, 20 Sep 2021 18:07:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-managing-a-cluster-of-firewalls/m-p/4470278#M1083846</guid>
      <dc:creator>Steve_etc</dc:creator>
      <dc:date>2021-09-20T18:07:17Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Managing a cluster of Firewalls</title>
      <link>https://community.cisco.com/t5/network-security/fmc-managing-a-cluster-of-firewalls/m-p/4470433#M1083850</link>
      <description>&lt;P&gt;I believe you can do this by implementing Access Control Policies with the "Inheritance" feature. More details can be found here:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/70/configuration/guide/fpmc-config-guide-v70/getting_started_with_access_control_policies.html#task_BE64105A65EF48818499392E831EC638" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/70/configuration/guide/fpmc-config-guide-v70/getting_started_with_access_control_policies.html#task_BE64105A65EF48818499392E831EC638&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Sep 2021 02:28:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-managing-a-cluster-of-firewalls/m-p/4470433#M1083850</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2021-09-21T02:28:57Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Managing a cluster of Firewalls</title>
      <link>https://community.cisco.com/t5/network-security/fmc-managing-a-cluster-of-firewalls/m-p/4470492#M1083854</link>
      <description>&lt;P&gt;Great, that looks like what I am after...Thank you for taking the time!&lt;/P&gt;</description>
      <pubDate>Tue, 21 Sep 2021 06:56:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-managing-a-cluster-of-firewalls/m-p/4470492#M1083854</guid>
      <dc:creator>Steve_etc</dc:creator>
      <dc:date>2021-09-21T06:56:26Z</dc:date>
    </item>
  </channel>
</rss>

