<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: how to Design DR Site FTD firewall in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/how-to-design-dr-site-ftd-firewall/m-p/5050775#M1110390</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1037350"&gt;@ShareefKooliyodan0444&lt;/a&gt; based on your diagram you probably want to take into consideration having FMC High Availability when the DC site is down, as the DR site currently has no way to manage the DR firewall. You can deploy a secondary FMC in the DR and promote in the event the DC site goes down. &lt;A href="https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/admin/720/management-center-admin-72/system-ha.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/admin/720/management-center-admin-72/system-ha.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Alternatively if both sites have internet access you could consider using the Cloud FMC (cdFMC) which would have reachability to both sites.&lt;/P&gt;
&lt;P&gt;Whether using an on premise FMC or cdFMC, both the DC and DR&amp;nbsp; FTDs can share the same policies so you'd have a consistent configuration deployed at both sites.&lt;/P&gt;</description>
    <pubDate>Tue, 26 Mar 2024 12:10:23 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2024-03-26T12:10:23Z</dc:date>
    <item>
      <title>how to Design DR Site FTD firewall</title>
      <link>https://community.cisco.com/t5/network-security/how-to-design-dr-site-ftd-firewall/m-p/5049835#M1110324</link>
      <description>&lt;P&gt;Hello Guys&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kindly check attached scenario and please advice how i can design and configure DR site ftd firewall&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do I required separate fmc for DR site FTD ? if not required how I will register DR site ftd in Head office fmc ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can I manage DR site ftd from Head office fmc ?if I can manage how I will create nat and access policy for this site separately ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Mar 2024 07:17:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-design-dr-site-ftd-firewall/m-p/5049835#M1110324</guid>
      <dc:creator>ShareefKooliyodan0444</dc:creator>
      <dc:date>2024-03-25T07:17:50Z</dc:date>
    </item>
    <item>
      <title>Re: how to Design DR Site FTD firewall</title>
      <link>https://community.cisco.com/t5/network-security/how-to-design-dr-site-ftd-firewall/m-p/5049849#M1110325</link>
      <description>&lt;P&gt;the FMC can mgmt many FTD, each FTD in different site and each FTD have it config NAT and ACL, you can config NAT and then deploy it for FTD in DR.&lt;BR /&gt;&lt;BR /&gt;note:- there is no attachment&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Mon, 25 Mar 2024 07:35:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-design-dr-site-ftd-firewall/m-p/5049849#M1110325</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-03-25T07:35:05Z</dc:date>
    </item>
    <item>
      <title>Re: how to Design DR Site FTD firewall</title>
      <link>https://community.cisco.com/t5/network-security/how-to-design-dr-site-ftd-firewall/m-p/5049850#M1110326</link>
      <description>&lt;P&gt;Thank you , Kindly find my scenario&amp;nbsp; is attached , can you share if you have any sample configuration doc or video ?&lt;/P&gt;</description>
      <pubDate>Mon, 25 Mar 2024 07:38:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-design-dr-site-ftd-firewall/m-p/5049850#M1110326</guid>
      <dc:creator>ShareefKooliyodan0444</dc:creator>
      <dc:date>2024-03-25T07:38:18Z</dc:date>
    </item>
    <item>
      <title>Re: how to Design DR Site FTD firewall</title>
      <link>https://community.cisco.com/t5/network-security/how-to-design-dr-site-ftd-firewall/m-p/5050707#M1110377</link>
      <description>&lt;P&gt;sure&amp;nbsp;&lt;BR /&gt;&lt;A href="https://www.youtube.com/watch?v=kgZuDNfKQ5A&amp;amp;list=PLpGt4hh32rCqTytts_V-tBAPJ3ad2EgWX" target="_blank" rel="noopener"&gt;1. Cisco FTD Overview and Features (youtube.com)&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;this series of video how you config FTD&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;For position of FMC it can in DR (separate fmc) or fmc in head office, fmc will mgmt both ftd.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;If the fmc in Head office then config acl and NAT and deploy to ftd in DR.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Tue, 26 Mar 2024 12:18:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-design-dr-site-ftd-firewall/m-p/5050707#M1110377</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-03-26T12:18:18Z</dc:date>
    </item>
    <item>
      <title>Re: how to Design DR Site FTD firewall</title>
      <link>https://community.cisco.com/t5/network-security/how-to-design-dr-site-ftd-firewall/m-p/5050775#M1110390</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1037350"&gt;@ShareefKooliyodan0444&lt;/a&gt; based on your diagram you probably want to take into consideration having FMC High Availability when the DC site is down, as the DR site currently has no way to manage the DR firewall. You can deploy a secondary FMC in the DR and promote in the event the DC site goes down. &lt;A href="https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/admin/720/management-center-admin-72/system-ha.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/admin/720/management-center-admin-72/system-ha.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Alternatively if both sites have internet access you could consider using the Cloud FMC (cdFMC) which would have reachability to both sites.&lt;/P&gt;
&lt;P&gt;Whether using an on premise FMC or cdFMC, both the DC and DR&amp;nbsp; FTDs can share the same policies so you'd have a consistent configuration deployed at both sites.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Mar 2024 12:10:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-design-dr-site-ftd-firewall/m-p/5050775#M1110390</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2024-03-26T12:10:23Z</dc:date>
    </item>
  </channel>
</rss>

