<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco ASA to Firepower Migration in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4789239#M1098440</link>
    <description>&lt;P&gt;Thank you&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp;and&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Cisco&amp;nbsp;FPR3130-ASA-K9 means the one with FXOS?&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 08 Mar 2023 06:07:22 GMT</pubDate>
    <dc:creator>manvik</dc:creator>
    <dc:date>2023-03-08T06:07:22Z</dc:date>
    <item>
      <title>Cisco ASA to Firepower Migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787648#M1098370</link>
      <description>&lt;P&gt;what's the best method to migrate all config, certificates from ASA 55xx device to Cisco firepower 3000 series.&lt;/P&gt;
&lt;P&gt;Would backup and restore work?&lt;/P&gt;
&lt;P&gt;As there are too many policies and configurations, it's not practical to manually config the new firewall. There is no FMC, only firepower FDM.&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 09:02:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787648#M1098370</guid>
      <dc:creator>manvik</dc:creator>
      <dc:date>2023-03-06T09:02:39Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA to Firepower Migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787652#M1098371</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/161770"&gt;@manvik&lt;/a&gt; unfortunately the Firepower Migration Tool is for migrating from ASA to FTD with FMC management not FDM.&lt;/P&gt;
&lt;P&gt;Perhaps you could get a CDO evaluation, then migrate the configuration from ASA to the FDM.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/migration-tool/migration-guide-CDO/ASA2FTD_Using_CDO/m_how_to_implement_migration.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/migration-tool/migration-guide-CDO/ASA2FTD_Using_CDO/m_how_to_implement_migration.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 09:09:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787652#M1098371</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-03-06T09:09:17Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA to Firepower Migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787684#M1098375</link>
      <description>&lt;P&gt;Any other methods other that CDO? is it possible to import running-config from ASA to firepower.&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 09:54:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787684#M1098375</guid>
      <dc:creator>manvik</dc:creator>
      <dc:date>2023-03-06T09:54:22Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA to Firepower Migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787697#M1098376</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/161770"&gt;@manvik&lt;/a&gt; no, the FMT (Firepower Migration Tool) would be the best tool, but that is for FMC migrations only. A Virtual FMC is very cheap if that is an option.&lt;/P&gt;
&lt;P&gt;Else, create some custom python scripts to import the ASA objects etc in bulk.&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 10:00:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787697#M1098376</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-03-06T10:00:06Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA to Firepower Migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787937#M1098391</link>
      <description>&lt;P&gt;so i think we are stuck. no FMC, no python scripts.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Even if we had&amp;nbsp;&lt;SPAN&gt;Firepower Migration Tool, would it migrate site-site VPN connections.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 12:31:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787937#M1098391</guid>
      <dc:creator>manvik</dc:creator>
      <dc:date>2023-03-06T12:31:54Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA to Firepower Migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787939#M1098392</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/161770"&gt;@manvik&lt;/a&gt; yes you can migrate VPN settings. The following link provides a list of configuration settings migrated using FMT.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/migration-tool/fp-migtool-release-notes.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/migration-tool/fp-migtool-release-notes.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 12:34:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787939#M1098392</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-03-06T12:34:38Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA to Firepower Migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787951#M1098396</link>
      <description>&lt;P&gt;Then money spent on a small 2-device license of FMC (or even cloud-delivered FMC for CDO management) is much less than the cost of the hours (and potential for human error) involved in manually migrating a configuration line-by-line.&lt;/P&gt;
&lt;P&gt;Managing anything other than an extremely simple single firewall configuration with FDM&amp;nbsp; is a recipe for frustration and headaches. Believe me, I've tried it and I have decades of hands-on experience with firewalls.&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 13:12:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4787951#M1098396</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2023-03-06T13:12:07Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA to Firepower Migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4788776#M1098433</link>
      <description>&lt;P&gt;there's a mistake in what i mentioned. the destination device is cisco firepower ASA. This means ASA backup&amp;amp; restore would work?&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Cisco&amp;nbsp;FPR3130-ASA-K9 means the one with FXOS?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Mar 2023 15:36:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4788776#M1098433</guid>
      <dc:creator>manvik</dc:creator>
      <dc:date>2023-03-07T15:36:21Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA to Firepower Migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4788784#M1098434</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/161770"&gt;@manvik&lt;/a&gt; well that is different then. You are using firepower hardware running the ASA image, so yes you can mostly copy and paste configuration.&lt;/P&gt;
&lt;P&gt;Physical Interfaces may change, you'll have to export and import certificates (if used) and use &lt;STRONG&gt;more system:running-config&lt;/STRONG&gt; to get the plaintext pre-shared-key (if using). Bear in mind, depending on which ASA version you are using on the new hardware older insecure crypto algorthims have been depreciated, so you may need to reconfigure VPNs.&lt;/P&gt;</description>
      <pubDate>Tue, 07 Mar 2023 15:42:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4788784#M1098434</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-03-07T15:42:24Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA to Firepower Migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4789239#M1098440</link>
      <description>&lt;P&gt;Thank you&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp;and&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Cisco&amp;nbsp;FPR3130-ASA-K9 means the one with FXOS?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Mar 2023 06:07:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4789239#M1098440</guid>
      <dc:creator>manvik</dc:creator>
      <dc:date>2023-03-08T06:07:22Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA to Firepower Migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4789345#M1098446</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/161770"&gt;@manvik&lt;/a&gt; FXOS is the underlying operating system of the FPR3100 (and 2100/4100/9300 etc), where you configure the hardware/chassis related settings. On top of FXOS you run either ASA or FTD firewall image.&lt;/P&gt;</description>
      <pubDate>Wed, 08 Mar 2023 08:15:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4789345#M1098446</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-03-08T08:15:46Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA to Firepower Migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4789356#M1098449</link>
      <description>&lt;P&gt;Adding to what &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt; noted, the Firepower 3100 series (as well as 1010, 1100 and 2100 series) all have the underlying FX-OS (Firepower eXtensible Operating System) bundled in with the ASA or FTD software image. So you do not download and upgrade it separately.&lt;/P&gt;
&lt;P&gt;The Getting Started Guide is a good place to start!&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/getting-started/3100/secure-firewall-3100-gsg/asa.html#id_119800" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/getting-started/3100/secure-firewall-3100-gsg/asa.html#id_119800&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Mar 2023 08:28:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-to-firepower-migration/m-p/4789356#M1098449</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2023-03-08T08:28:21Z</dc:date>
    </item>
  </channel>
</rss>

