<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Creating control plane ACL with FMC in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/creating-control-plane-acl-with-fmc/m-p/4505181#M1085211</link>
    <description>&lt;P&gt;Hi &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1115704"&gt;@ABaker94985&lt;/a&gt; no not natively in the FMC GUI, but you can use Flexconfig to configure a Control Plane ACL.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://integratingit.wordpress.com/2021/06/26/ftd-control-plane-acl/" target="_blank"&gt;https://integratingit.wordpress.com/2021/06/26/ftd-control-plane-acl/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 18 Nov 2021 19:22:19 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2021-11-18T19:22:19Z</dc:date>
    <item>
      <title>Creating control plane ACL with FMC</title>
      <link>https://community.cisco.com/t5/network-security/creating-control-plane-acl-with-fmc/m-p/4505170#M1085210</link>
      <description>&lt;P&gt;We have a pair of 2140 FTDs running 6.6.1 that are managed by an FMC running 6.7. We'd like to upgrade the FTDs to later firmware, but can't at the moment. We're in the process of phasing out some ASA 5505's that are running site-to-site VPN tunnels, and unfortunately these older models can't run SHA-2. Until we get these replaced, we can't upgrade to a later software version.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a requirement to install AnyConnect ASAP, but there is a high severity vulnerability for the web services on 6.6.1. Until we can install later software, I think we can work around&amp;nbsp; using control plane ACL on the FTDs and restrict access to AnyConnect to the couple of individuals who need to use the client VPN - we don't want to expose the web services until we're sure the vulnerabilities have been addressed.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can a control plane ACL be configured via FMC? I've been searching for an answer, but I'm not finding the correct documentation.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Thu, 18 Nov 2021 19:11:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-control-plane-acl-with-fmc/m-p/4505170#M1085210</guid>
      <dc:creator>ABaker94985</dc:creator>
      <dc:date>2021-11-18T19:11:30Z</dc:date>
    </item>
    <item>
      <title>Re: Creating control plane ACL with FMC</title>
      <link>https://community.cisco.com/t5/network-security/creating-control-plane-acl-with-fmc/m-p/4505181#M1085211</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1115704"&gt;@ABaker94985&lt;/a&gt; no not natively in the FMC GUI, but you can use Flexconfig to configure a Control Plane ACL.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://integratingit.wordpress.com/2021/06/26/ftd-control-plane-acl/" target="_blank"&gt;https://integratingit.wordpress.com/2021/06/26/ftd-control-plane-acl/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Nov 2021 19:22:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-control-plane-acl-with-fmc/m-p/4505181#M1085211</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-11-18T19:22:19Z</dc:date>
    </item>
    <item>
      <title>Re: Creating control plane ACL with FMC</title>
      <link>https://community.cisco.com/t5/network-security/creating-control-plane-acl-with-fmc/m-p/4505191#M1085212</link>
      <description>&lt;P&gt;That's exactly what I was needing! I greatly appreciate the info.&lt;/P&gt;</description>
      <pubDate>Thu, 18 Nov 2021 19:31:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-control-plane-acl-with-fmc/m-p/4505191#M1085212</guid>
      <dc:creator>ABaker94985</dc:creator>
      <dc:date>2021-11-18T19:31:27Z</dc:date>
    </item>
  </channel>
</rss>

