<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: new user on Cisco Firepower 1120 unable to https in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070494#M1111292</link>
    <description>&lt;P&gt;Hi, yes https works using "admin" user&lt;BR /&gt;&lt;BR /&gt;Thanks,&lt;/P&gt;&lt;P&gt;N&lt;/P&gt;</description>
    <pubDate>Tue, 16 Apr 2024 08:53:25 GMT</pubDate>
    <dc:creator>network_geek1979</dc:creator>
    <dc:date>2024-04-16T08:53:25Z</dc:date>
    <item>
      <title>new user on Cisco Firepower 1120 unable to https</title>
      <link>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070489#M1111290</link>
      <description>&lt;P&gt;Team,&lt;BR /&gt;We have a new&amp;nbsp;Cisco Firepower 1120 just configured with basic configuration.&lt;/P&gt;&lt;P&gt;After the admin user I added another user with the "configure user add" command.&lt;BR /&gt;This new user can SSH to the device but cannot SSL.&lt;/P&gt;&lt;P&gt;Further, I want to ensure that this new user has all admin rights and for the same I have provided the "config" rights.&lt;BR /&gt;Will that suffice?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;N!&lt;/P&gt;</description>
      <pubDate>Tue, 16 Apr 2024 08:45:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070489#M1111290</guid>
      <dc:creator>network_geek1979</dc:creator>
      <dc:date>2024-04-16T08:45:53Z</dc:date>
    </item>
    <item>
      <title>Re: new user on Cisco Firepower 1120 unable to https</title>
      <link>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070493#M1111291</link>
      <description>&lt;P&gt;Can you access http using admin user ?&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Tue, 16 Apr 2024 08:52:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070493#M1111291</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-04-16T08:52:19Z</dc:date>
    </item>
    <item>
      <title>Re: new user on Cisco Firepower 1120 unable to https</title>
      <link>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070494#M1111292</link>
      <description>&lt;P&gt;Hi, yes https works using "admin" user&lt;BR /&gt;&lt;BR /&gt;Thanks,&lt;/P&gt;&lt;P&gt;N&lt;/P&gt;</description>
      <pubDate>Tue, 16 Apr 2024 08:53:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070494#M1111292</guid>
      <dc:creator>network_geek1979</dc:creator>
      <dc:date>2024-04-16T08:53:25Z</dc:date>
    </item>
    <item>
      <title>Re: new user on Cisco Firepower 1120 unable to https</title>
      <link>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070496#M1111293</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/47004"&gt;@network_geek1979&lt;/a&gt; that's because the&lt;STRONG&gt; &lt;SPAN class="keyword kwd"&gt;configure &lt;SPAN class="searchMark primary"&gt;user&lt;/SPAN&gt; add&lt;/SPAN&gt; &lt;/STRONG&gt;command creates a user account with CLI access only, they cannot log into the &lt;SPAN class="ph"&gt;device manager&lt;/SPAN&gt; web interface. &lt;/P&gt;
&lt;P&gt;"You can create local user accounts that can log into the CLI using the &lt;SPAN&gt;&lt;SPAN class="keyword kwd"&gt;configure user add&lt;/SPAN&gt; &lt;/SPAN&gt; command. &lt;STRONG&gt;However, these users can log into the CLI only. They cannot log into the &lt;SPAN class="ph"&gt;device manager&lt;/SPAN&gt; web interface&lt;/STRONG&gt;." reference - &lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/740/fdm/fptd-fdm-config-guide-740/fptd-fdm-get-started.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/740/fdm/fptd-fdm-config-guide-740/fptd-fdm-get-started.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 16 Apr 2024 10:44:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070496#M1111293</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2024-04-16T10:44:28Z</dc:date>
    </item>
    <item>
      <title>Re: new user on Cisco Firepower 1120 unable to https</title>
      <link>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070499#M1111294</link>
      <description>&lt;P&gt;Hi Rob, where can I configure that? I see I can go to Objects and then create a new user.&lt;BR /&gt;However, it does not allow me to provide "MGMT" as the service types.&lt;/P&gt;</description>
      <pubDate>Tue, 16 Apr 2024 09:03:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070499#M1111294</guid>
      <dc:creator>network_geek1979</dc:creator>
      <dc:date>2024-04-16T09:03:28Z</dc:date>
    </item>
    <item>
      <title>Re: new user on Cisco Firepower 1120 unable to https</title>
      <link>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070510#M1111295</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/47004"&gt;@network_geek1979&lt;/a&gt; actually you cannot create additional local admin user accounts, you'd have to use an external AAA.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/720/fdm/fptd-fdm-config-guide-720/fptd-fdm-mgmt.html#id_73790" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/720/fdm/fptd-fdm-config-guide-720/fptd-fdm-mgmt.html#id_73790&lt;/A&gt;&lt;/P&gt;
&lt;H2 id="ariaid-title28" class="title topictitle2"&gt;Managing &lt;SPAN class="ph"&gt;Device Manager&lt;/SPAN&gt; and &lt;SPAN class="ph"&gt;Threat Defense&lt;/SPAN&gt; User Access&lt;/H2&gt;
&lt;SECTION class="body conbody"&gt;
&lt;P class="p"&gt;"You can configure an external authentication and authorization source for users to log into &lt;SPAN class="ph"&gt;threat defense&lt;/SPAN&gt; (HTTPS access). You can use an external server in addition to, or instead of, the local user database and the system-defined &lt;SPAN class="ph uicontrol"&gt;admin&lt;/SPAN&gt; user. &lt;STRONG&gt;Note that you cannot create additional local user accounts for &lt;SPAN class="ph"&gt;device manager&lt;/SPAN&gt; access."&lt;/STRONG&gt;&lt;/P&gt;
&lt;/SECTION&gt;</description>
      <pubDate>Tue, 16 Apr 2024 09:09:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070510#M1111295</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2024-04-16T09:09:45Z</dc:date>
    </item>
    <item>
      <title>Re: new user on Cisco Firepower 1120 unable to https</title>
      <link>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070560#M1111304</link>
      <description>&lt;P&gt;The new user use same subnet of admin' and admin can access http&lt;/P&gt;
&lt;P&gt;Then this limitation of fpr.&lt;/P&gt;
&lt;P&gt;To be more sure&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Debug http 255&lt;/P&gt;
&lt;P&gt;Abd try access&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Tue, 16 Apr 2024 10:02:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070560#M1111304</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-04-16T10:02:24Z</dc:date>
    </item>
    <item>
      <title>Re: new user on Cisco Firepower 1120 unable to https</title>
      <link>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070641#M1111305</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp;is right, if you are managing this FTD via FDM then creating multiple admin users for the GUI accesses is not supported. In that case you would need to rely on an external authentication server such as ISE or Microsoft NPS for example. Here is a post of mine I had created to show you how to do it:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://bluenetsec.com/fdm-multiple-admin-accounts/" target="_blank"&gt;Creating Multiple Admin Accounts for FDM GUI Accesses (bluenetsec.com)&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 16 Apr 2024 11:17:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/new-user-on-cisco-firepower-1120-unable-to-https/m-p/5070641#M1111305</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2024-04-16T11:17:08Z</dc:date>
    </item>
  </channel>
</rss>

