<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA to FTD migration in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-to-ftd-migration/m-p/5139624#M1113986</link>
    <description>&lt;P&gt;hey there i am trying to migrate my old ASA Cluster firewall to a new FTD via FMC using FTM tool so i tried a demo for the same with same configuration on FTM however FTM gives me error for interface&lt;/P&gt;&lt;P&gt;there is total 113 Logical Interfaces like 'interface Port-channel10.197' this&lt;/P&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;error:&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;Blocked&lt;/DIV&gt;&lt;DIV class=""&gt;FTD 3110 has only 16 physical interfaces available but the source configuration has 84 interfaces. Please choose a different FTD device to proceed.&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
    <pubDate>Wed, 03 Jul 2024 19:44:56 GMT</pubDate>
    <dc:creator>rushispace</dc:creator>
    <dc:date>2024-07-03T19:44:56Z</dc:date>
    <item>
      <title>ASA to FTD migration</title>
      <link>https://community.cisco.com/t5/network-security/asa-to-ftd-migration/m-p/5139624#M1113986</link>
      <description>&lt;P&gt;hey there i am trying to migrate my old ASA Cluster firewall to a new FTD via FMC using FTM tool so i tried a demo for the same with same configuration on FTM however FTM gives me error for interface&lt;/P&gt;&lt;P&gt;there is total 113 Logical Interfaces like 'interface Port-channel10.197' this&lt;/P&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;error:&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;Blocked&lt;/DIV&gt;&lt;DIV class=""&gt;FTD 3110 has only 16 physical interfaces available but the source configuration has 84 interfaces. Please choose a different FTD device to proceed.&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Wed, 03 Jul 2024 19:44:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-to-ftd-migration/m-p/5139624#M1113986</guid>
      <dc:creator>rushispace</dc:creator>
      <dc:date>2024-07-03T19:44:56Z</dc:date>
    </item>
    <item>
      <title>Re: ASA to FTD migration</title>
      <link>https://community.cisco.com/t5/network-security/asa-to-ftd-migration/m-p/5139627#M1113987</link>
      <description>&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/migration-tool/migration-guide/ASA2FTD-with-FP-Migration-Tool.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/migration-tool/migration-guide/ASA2FTD-with-FP-Migration-Tool.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;this migration tool&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Wed, 03 Jul 2024 20:04:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-to-ftd-migration/m-p/5139627#M1113987</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-07-03T20:04:01Z</dc:date>
    </item>
    <item>
      <title>Re: ASA to FTD migration</title>
      <link>https://community.cisco.com/t5/network-security/asa-to-ftd-migration/m-p/5139629#M1113988</link>
      <description>&lt;P&gt;so as per the documentation we need to create interface, port-channel manually right ?&lt;/P&gt;&lt;P&gt;/&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P class=""&gt;During migration, the Secure Firewall migration tool resets the interface configuration. If you use these interfaces in policies, the Secure Firewall migration tool cannot reset them and hence the migration fails.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P class=""&gt;The Secure Firewall migration tool can create subinterfaces on the native instance of the &lt;SPAN class=""&gt;threat defense&lt;/SPAN&gt; device based on the &lt;SPAN class=""&gt;ASA&lt;/SPAN&gt; configuration. Manually create interfaces and port channel interfaces on the target &lt;SPAN class=""&gt;threat defense&lt;/SPAN&gt; device before starting migration. For example, if your &lt;SPAN class=""&gt;ASA&lt;/SPAN&gt; configuration is assigned with the following interfaces and port channels, you must create them on the target &lt;SPAN class=""&gt;threat defense&lt;/SPAN&gt; device before the migration:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P class=""&gt;Five physical interfaces&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P class=""&gt;Five port channels&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P class=""&gt;Two management-only interfaces&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Jul 2024 20:14:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-to-ftd-migration/m-p/5139629#M1113988</guid>
      <dc:creator>rushispace</dc:creator>
      <dc:date>2024-07-03T20:14:01Z</dc:date>
    </item>
    <item>
      <title>Re: ASA to FTD migration</title>
      <link>https://community.cisco.com/t5/network-security/asa-to-ftd-migration/m-p/5220733#M1117372</link>
      <description>&lt;P&gt;Thanks every one !! actually we need to create a basic port-channel interface eg. po-ch10 and then migration tool will create sub interface on the bases of vlan taging&lt;/P&gt;</description>
      <pubDate>Wed, 06 Nov 2024 06:22:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-to-ftd-migration/m-p/5220733#M1117372</guid>
      <dc:creator>rushispace</dc:creator>
      <dc:date>2024-11-06T06:22:56Z</dc:date>
    </item>
  </channel>
</rss>

