<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FTD 1120 CLI configuration in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815455#M1099542</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1495641"&gt;@gusarodar85&lt;/a&gt;&amp;nbsp;no you cannot use the CLI to configure the FTD, you must use the GUI to configure the device. If managed locally using the FDM GUI or centrally using FMC GUI.&lt;/P&gt;
&lt;P&gt;The CLI is used for configuring the mgmt interface and troubleshooting.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 17 Apr 2023 05:56:40 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2023-04-17T05:56:40Z</dc:date>
    <item>
      <title>FTD 1120 CLI configuration</title>
      <link>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815281#M1099539</link>
      <description>&lt;P&gt;When I use the system support diagnostic-cli command I don't see the configure terminal command, can these FTDs only be configured using the FTD GUI?&lt;/P&gt;</description>
      <pubDate>Mon, 17 Apr 2023 00:01:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815281#M1099539</guid>
      <dc:creator>gusarodar85</dc:creator>
      <dc:date>2023-04-17T00:01:23Z</dc:date>
    </item>
    <item>
      <title>Re: FTD 1120 CLI configuration</title>
      <link>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815292#M1099540</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hi,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;The CLI in FirePower threat defence device has different modes.&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;SPAN&gt;&lt;STRONG&gt;Regular CLI&lt;/STRONG&gt;&amp;nbsp;is used for threat defence management system configuration and troubleshooting.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;&lt;STRONG&gt;Diagnostic CLI&lt;/STRONG&gt;&amp;nbsp;is used for advanced troubleshooting as it has additional show and other commands. To login to this CLI use&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;session wlan console&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;command. To enter Privileged EXEC mode use&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;system support diagnostic -cli&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;command&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN&gt;Expert mode is used only if a documented procedure tells you to do so or if the Cisco technical assistance center asks you to use it. Use ‘&lt;/SPAN&gt;&lt;STRONG&gt;expert’&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt;command to enter this mode.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;FXOS is also used for configuration and troubleshooting so from FXOS you can enter ‘&lt;/SPAN&gt;&lt;STRONG&gt;connect’&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;command to enter into threat defence console&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Apr 2023 00:40:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815292#M1099540</guid>
      <dc:creator>Flavio Miranda</dc:creator>
      <dc:date>2023-04-17T00:40:09Z</dc:date>
    </item>
    <item>
      <title>Re: FTD 1120 CLI configuration</title>
      <link>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815309#M1099541</link>
      <description>&lt;P&gt;Thank you very much for the answer, I have seen these different modes, but my question would be if in any of these modes you can find the configure terminal command to perform the configuration from the CLI as if it were an ASA&lt;/P&gt;</description>
      <pubDate>Mon, 17 Apr 2023 01:50:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815309#M1099541</guid>
      <dc:creator>gusarodar85</dc:creator>
      <dc:date>2023-04-17T01:50:55Z</dc:date>
    </item>
    <item>
      <title>Re: FTD 1120 CLI configuration</title>
      <link>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815455#M1099542</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1495641"&gt;@gusarodar85&lt;/a&gt;&amp;nbsp;no you cannot use the CLI to configure the FTD, you must use the GUI to configure the device. If managed locally using the FDM GUI or centrally using FMC GUI.&lt;/P&gt;
&lt;P&gt;The CLI is used for configuring the mgmt interface and troubleshooting.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Apr 2023 05:56:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815455#M1099542</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-17T05:56:40Z</dc:date>
    </item>
    <item>
      <title>Re: FTD 1120 CLI configuration</title>
      <link>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815460#M1099543</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&amp;nbsp;The closer you can get with ASA is usgin flexconfig&lt;/P&gt;
&lt;P&gt;But when managed by fmc, the idea is use gui only.&lt;/P&gt;
&lt;P&gt;Take a look here.&lt;/P&gt;
&lt;P&gt;&lt;A title="https://www.lookingpoint.com/blog/ftd-flexconfig" href="https://www.lookingpoint.com/blog/ftd-flexconfig" target="_self"&gt;https://www.lookingpoint.com/blog/ftd-flexconfig&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Apr 2023 06:03:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815460#M1099543</guid>
      <dc:creator>Flavio Miranda</dc:creator>
      <dc:date>2023-04-17T06:03:59Z</dc:date>
    </item>
    <item>
      <title>Re: FTD 1120 CLI configuration</title>
      <link>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815796#M1099549</link>
      <description>&lt;P&gt;This kind of depends as to what your expectations are when you say configure the FTD from the CLI.&amp;nbsp; The method you should be using, as mentioned by others in this post, is via the GUI.&amp;nbsp; But now lets say you messed up routing on the FTD and have lost connectivity between the FMC and the FMC because management traffic is routed from the management interface via a data interface on the FTD.&amp;nbsp; In this case you can configure routing directly in the CLI (expert mode) but keep in mind that once connection to FMC is re-established you need to correct or add the configuration to the FMC before you deploy again.&amp;nbsp; When you deploy after configuring on the CLI directly, the configuration on the FTD will be overwritten and you will lose the configuration you added on the CLI unless you update the FMC configuration with the relevant configuration.&lt;/P&gt;
&lt;P style="margin: 0in; font-family: Calibri; font-size: 11.0pt;" lang="nb-NO"&gt;Enter expert mode:&lt;/P&gt;
&lt;P style="margin: 0in; font-family: Calibri; font-size: 11.0pt;" lang="nb-NO"&gt;&amp;gt;expert&lt;/P&gt;
&lt;P style="margin: 0in; font-family: Calibri; font-size: 11.0pt;" lang="nb-NO"&gt;# sudo su -&lt;/P&gt;
&lt;P style="margin: 0in; font-family: Calibri; font-size: 11.0pt;" lang="nb-NO"&gt;root# cd /ngfw/var/sf/bin&lt;/P&gt;
&lt;P style="margin: 0in; font-family: Calibri; font-size: 11.0pt;" lang="nb-NO"&gt;root# LinaConfigTool "route Localport-base 192.168.0 255.255.255.0 172.16.0.254";&lt;/P&gt;</description>
      <pubDate>Mon, 17 Apr 2023 09:34:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815796#M1099549</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2023-04-17T09:34:41Z</dc:date>
    </item>
    <item>
      <title>Re: FTD 1120 CLI configuration</title>
      <link>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815816#M1099550</link>
      <description>&lt;P class="p"&gt;The initial CLI you access on the Console port differs by device type.&lt;/P&gt;
&lt;UL class="ul"&gt;
&lt;LI id="wp3186557652__li_4C3DDC715A66473CA05722A114BBA4E7" class="li"&gt;
&lt;P class="p"&gt;&lt;STRONG&gt;ASA hardware platforms&lt;/STRONG&gt;—The CLI on the Console port is the regular&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;threat defense&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;CLI.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI id="wp3186557652__li_EC0A0A74ECA84318AFC64348A71B772A" class="li"&gt;
&lt;P class="p"&gt;&lt;STRONG&gt;Other hardware platforms&lt;/STRONG&gt;—The CLI on the Console port is&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;Secure Firewall eXtensible Operating System&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;(FXOS). You can get to the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;threat defense&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;CLI using the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph synph"&gt;&lt;SPAN class="keyword kwd"&gt;connect&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;command. Use the &lt;STRONG&gt;FXOS CLI&lt;/STRONG&gt; for chassis-level configuration and troubleshooting only.&lt;SPAN class="ph"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;For the Firepower 2100, you cannot perform any configuration at the FXOS CLI.&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;Use the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;threat defense&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;CLI for basic configuration, monitoring, and normal system troubleshooting. See the FXOS documentation for information on FXOS commands for the Firepower 4100 and 9300. See the FXOS troubleshooting guide for information on FXOS commands for other models.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the other hardware platform it CLI is use for FXOS, so there is different between HW platfrom and CLI you can access&amp;nbsp;&lt;BR /&gt;but still you can use FlexConfig&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Apr 2023 10:10:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4815816#M1099550</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-17T10:10:01Z</dc:date>
    </item>
    <item>
      <title>Re: FTD 1120 CLI configuration</title>
      <link>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4816032#M1099568</link>
      <description>&lt;P&gt;There is no "configure terminal" in any interface of and FTD device. Other than a very few seldom used system level commands (and setup of the management interface), all configuration is via the local manager (FDM) or remote manager (FMC) GUI.&lt;/P&gt;
&lt;P&gt;If you use cloud-based management (CDO natively or cdFMC) those manage the device using REST API. You can technically do that directly but it's not something customers often do.&lt;/P&gt;</description>
      <pubDate>Mon, 17 Apr 2023 13:30:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-1120-cli-configuration/m-p/4816032#M1099568</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2023-04-17T13:30:26Z</dc:date>
    </item>
  </channel>
</rss>

