<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Firepower in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/firepower/m-p/4767437#M1097420</link>
    <description>&lt;P&gt;You can see the hit-count on the FTD-CLI with the command&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;show access-control-config&lt;/LI-CODE&gt;
&lt;P&gt;I assume that you run a quite old software, when you update to 7.2 you can do this (and more) on the FMC itself.&lt;/P&gt;</description>
    <pubDate>Thu, 02 Feb 2023 12:57:13 GMT</pubDate>
    <dc:creator>Karsten Iwen</dc:creator>
    <dc:date>2023-02-02T12:57:13Z</dc:date>
    <item>
      <title>Firepower</title>
      <link>https://community.cisco.com/t5/network-security/firepower/m-p/4767431#M1097419</link>
      <description>&lt;P&gt;Hi guys,&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have FPR 1140 with&amp;nbsp; 1303 active rules :((&lt;BR /&gt;I need to optimize (delete not used old rules) it.&lt;/P&gt;&lt;P&gt;As you can see on the screen, there are no options like: "active sessions", "hit counts", "first used" or "last used".&amp;nbsp;&amp;nbsp;&lt;BR /&gt;so, can you please tell me how can I do this job? What is best practice?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Kepler_0-1675340594217.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/175565i2F30BF27F17E7A72/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Kepler_0-1675340594217.png" alt="Kepler_0-1675340594217.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 12:34:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower/m-p/4767431#M1097419</guid>
      <dc:creator>Kepler</dc:creator>
      <dc:date>2023-02-02T12:34:39Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower</title>
      <link>https://community.cisco.com/t5/network-security/firepower/m-p/4767437#M1097420</link>
      <description>&lt;P&gt;You can see the hit-count on the FTD-CLI with the command&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;show access-control-config&lt;/LI-CODE&gt;
&lt;P&gt;I assume that you run a quite old software, when you update to 7.2 you can do this (and more) on the FMC itself.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 12:57:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower/m-p/4767437#M1097420</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2023-02-02T12:57:13Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower</title>
      <link>https://community.cisco.com/t5/network-security/firepower/m-p/4767480#M1097422</link>
      <description>&lt;P&gt;There is also another option for older FMC version using a custom workflow&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/212330-firepower-management-center-display-acc.html" target="_self"&gt;https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/212330-firepower-management-center-display-acc.html&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;However I think the option to display hitcounts directly from the ACP has been around for some time now. They are mention it in the release notes here for&amp;nbsp; version 6.4&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/640/configuration/guide/fpmc-config-guide-v64/getting_started_with_access_control_policies.html" target="_self"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/640/configuration/guide/fpmc-config-guide-v64/getting_started_with_access_control_policies.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Look for this button in your ACP&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="1.jpg" style="width: 633px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/175569i315BD3A0DF0F2D68/image-size/large?v=v2&amp;amp;px=999" role="button" title="1.jpg" alt="1.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;/Chess&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 14:24:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower/m-p/4767480#M1097422</guid>
      <dc:creator>Chess Norris</dc:creator>
      <dc:date>2023-02-02T14:24:24Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower</title>
      <link>https://community.cisco.com/t5/network-security/firepower/m-p/4767750#M1097450</link>
      <description>&lt;P&gt;There should also be an API call that you can do to get the hitcount of rules&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/70/api/REST/firepower_management_center_rest_api_quick_start_guide_70/Objects_In_The_REST_API.html#hitcounts_put" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/70/api/REST/firepower_management_center_rest_api_quick_start_guide_70/Objects_In_The_REST_API.html#hitcounts_put&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 20:37:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower/m-p/4767750#M1097450</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2023-02-02T20:37:34Z</dc:date>
    </item>
  </channel>
</rss>

