<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FPR-2110 HA configuration for Interface monitoring and Software in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820127#M1099784</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1109333"&gt;@Mit_har&lt;/a&gt; the FPR1120 supports up to 4.5Gbps stateful inspection, so may suffice. What other features will be used on the Firewall? &lt;/P&gt;</description>
    <pubDate>Mon, 24 Apr 2023 09:15:44 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2023-04-24T09:15:44Z</dc:date>
    <item>
      <title>FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4819906#M1099775</link>
      <description>&lt;P&gt;Hi, Do we need to have the same type of interface for FPR-2110 HA Active/Standby configuration to core switches? For example, From FW 1, we have fibre connection to core switch A and from FW 2, we have copper connection to core switch B. will HA work on this design?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="inhamit_0-1682306210037.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/182626i7D687D1D62DD9909/image-size/medium?v=v2&amp;amp;px=400" role="button" title="inhamit_0-1682306210037.png" alt="inhamit_0-1682306210037.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I wanted to use&amp;nbsp;FPR-2110 for Internal routing or as a router on stick option. Please suggest which Firewall software I should purchase to full fill this requirement to work with C9300x switches? Firepower threat defense software or ASA software?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 03:22:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4819906#M1099775</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-04-24T03:22:52Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820095#M1099777</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1109333"&gt;@Mit_har&lt;/a&gt; the cisco documentation states you must have the same number and type of interfaces in an HA. On your diagram you've got different interfaces for the inside interfaces (port 3 an 4), that would not work.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/device-config/720/management-center-device-config-72/high-availability.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/device-config/720/management-center-device-config-72/high-availability.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Ideally you'll have the FMC management software then deploy the FTD software image on the Firewalls, managing the FTD locally using FDM is not very good.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 08:43:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820095#M1099777</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-24T08:43:31Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820098#M1099778</link>
      <description>&lt;P&gt;Thanks.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Ok. we will use the same port on the inside network that is port 3. IF we use fibre interface on port 3 at FW 1 and Copper SFP on port 3 at FW 2, will it be ok for HA or we should have fibre interfaces on port 3 at FW 1 and FW 2 to achieve the HA.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 08:51:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820098#M1099778</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-04-24T08:51:00Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820107#M1099779</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1109333"&gt;@Mit_har&lt;/a&gt; dcoumentation states it should have the same interface type. I would use fibre for both interfaces when building the failover pair.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 08:56:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820107#M1099779</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-24T08:56:47Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820112#M1099780</link>
      <description>&lt;P&gt;Thanks. can we use&amp;nbsp;&lt;STRONG&gt;FPR-1120 in place of&amp;nbsp;FPR-2110&lt;/STRONG&gt;? what will be the limitation on the network if we go for FPR-1120. We wanted to use firewall as router (via trunk or sub-interfaces on the firewall side) for the inside network on the same link it is connect to core switch. Means, Firewall will be a gateway for Inside network via core switch.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:02:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820112#M1099780</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-04-24T09:02:30Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820116#M1099781</link>
      <description>&lt;P&gt;NO you can not must same interface Number&lt;BR /&gt;if you use SFP in FW1 then you must use SFP in FW2&lt;BR /&gt;and ALSO same &lt;STRONG&gt;INTERFACE NUMBER&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:09:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820116#M1099781</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-24T09:09:01Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820119#M1099782</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1109333"&gt;@Mit_har&lt;/a&gt; possibly, looking at the datasheets the 2100 has better performance.&lt;/P&gt;
&lt;P&gt;How many users and how much Firewall throughput are you expecting?&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/products/collateral/security/firepower-1000-series/datasheet-c78-742469.html" target="_blank"&gt;https://www.cisco.com/c/en/us/products/collateral/security/firepower-1000-series/datasheet-c78-742469.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/products/collateral/security/firepower-2100-series/datasheet-c78-742473.html" target="_blank"&gt;https://www.cisco.com/c/en/us/products/collateral/security/firepower-2100-series/datasheet-c78-742473.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:07:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820119#M1099782</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-24T09:07:31Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820122#M1099783</link>
      <description>&lt;P&gt;We are looking for 1GBPS throughput with 150 users.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:11:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820122#M1099783</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-04-24T09:11:00Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820127#M1099784</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1109333"&gt;@Mit_har&lt;/a&gt; the FPR1120 supports up to 4.5Gbps stateful inspection, so may suffice. What other features will be used on the Firewall? &lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:15:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820127#M1099784</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-24T09:15:44Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820130#M1099785</link>
      <description>&lt;P&gt;&lt;A href="https://community.cisco.com/kxiwq67737/attachments/kxiwq67737/discussions-network-security/1011038/1/Cisco%20Firepower%20Next-Generation%20Firewall%20(NGFW).pdf" target="_blank"&gt;https://community.cisco.com/kxiwq67737/attachments/kxiwq67737/discussions-network-security/1011038/1/Cisco%20Firepower%20Next-Generation%20Firewall%20(NGFW).pdf&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:20:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820130#M1099785</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-24T09:20:43Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820134#M1099786</link>
      <description>&lt;P&gt;We are looking for IPS throughput.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Stateful inspection is indicated with ASA features. I think we can deploy either FTD or ASA on the firewall. Which Software version I should purchase to have IPS and routing function on the firewall. Is firewall comes with default routing option or do we need to ask our supplier to include in software version.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:26:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820134#M1099786</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-04-24T09:26:54Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820136#M1099787</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1109333"&gt;@Mit_har&lt;/a&gt; if you wish to use IPS then you will need the FTD image, you should also purchase the FMC to manage the FTD HA pair.&lt;/P&gt;
&lt;P&gt;Routing comes with the Base license, you will need to purchase the Threat IPS license.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:30:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820136#M1099787</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-24T09:30:24Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820143#M1099788</link>
      <description>&lt;P&gt;Ok. So we can go for FPR-1120 in place of FPR 2120. We shall achieve the same functionality with FPR-1120 with less throughout or users.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:36:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820143#M1099788</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-04-24T09:36:01Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820144#M1099789</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1109333"&gt;@Mit_har&lt;/a&gt; yes you have the same functionality, just less performance on the FPR1120 compared to the FPR2110.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:39:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820144#M1099789</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-24T09:39:07Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820147#M1099790</link>
      <description>&lt;P&gt;Last question, In place of using firewall as router on stick option or via sub-interfaces to use firewall as router for the inside network, what are the other possible option for routing in firewall?&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:42:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820147#M1099790</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-04-24T09:42:14Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820151#M1099791</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1109333"&gt;@Mit_har&lt;/a&gt; sub-interfaces and routing between VLANs via the firewall seems to be the most straight forward option.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:47:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820151#M1099791</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-24T09:47:32Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820152#M1099792</link>
      <description>&lt;P&gt;What you mean by Users here? VPN user or something else?&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:48:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820152#M1099792</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-04-24T09:48:42Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820153#M1099793</link>
      <description>&lt;P&gt;FW as Router in stick and subinterface in FW is same freind.&lt;/P&gt;
&lt;P&gt;I think you meaning using subinterface or vlan SVI in FW.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:50:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820153#M1099793</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-24T09:50:21Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820154#M1099794</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1109333"&gt;@Mit_har&lt;/a&gt; not VPN users, number of users behind the firewall would provide an indication on the number of connections and scale.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:52:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820154#M1099794</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-24T09:52:00Z</dc:date>
    </item>
    <item>
      <title>Re: FPR-2110 HA configuration for Interface monitoring and Software</title>
      <link>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820157#M1099795</link>
      <description>&lt;P&gt;User means Number of IP behind the firewall or can u give more hints to me?&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:55:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fpr-2110-ha-configuration-for-interface-monitoring-and-software/m-p/4820157#M1099795</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-04-24T09:55:15Z</dc:date>
    </item>
  </channel>
</rss>

