<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: WCCP Redirection on Firepower FTD 4110 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3696945#M132796</link>
    <description>&lt;P&gt;I was able to do some testing and got the WCCP redirection working, with some TAC help.&amp;nbsp; The out of the box template had to be modified for this use case.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This was an FTD 2110 deployment, the client was not ready to use native URL filtering on the FTD, they wanted to continue to use a third party appliance via WCCP redirection.&lt;/P&gt;
&lt;P&gt;I used two FlexConfig objects to deploy the configuration for service 0 (http) and service 70 (https).&amp;nbsp; The FlexConfig deployed this CLI configuration to the FTD.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;wccp 0 redirect-list WS-Redirect group-list WS-Gateway&lt;BR /&gt;wccp 70 redirect-list WS-Redirect group-list WS-Gateway&lt;BR /&gt;wccp interface inside 0 redirect in&lt;BR /&gt;wccp interface inside 70 redirect in&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 29 Aug 2018 12:30:28 GMT</pubDate>
    <dc:creator>Terry Grant</dc:creator>
    <dc:date>2018-08-29T12:30:28Z</dc:date>
    <item>
      <title>WCCP Redirection on Firepower FTD 4110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3693642#M132781</link>
      <description>&lt;P&gt;Hi Folks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have one Q regarding WCCP, currently we have FTD as internet facing FW with 3 interface:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Inside: connected with another DC FW&lt;/P&gt;
&lt;P&gt;Outside: to internet&lt;/P&gt;
&lt;P&gt;DMZ : DMZ servers and WSA&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;With above design we have WSA in transparent mode and any request to internet should be redirected by FTD to WSA then to internet excluding any (80,443 as well) requests to DMZ servers .&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;how can i configure WCCP on FTD ,Or is there any other suggestion based on best practise .&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 16:08:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3693642#M132781</guid>
      <dc:creator>vantom85cisco</dc:creator>
      <dc:date>2020-02-21T16:08:28Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Redirection on Firepower FTD 4110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3693692#M132786</link>
      <description>&lt;P&gt;You have to use Flex Config. FMC has a template you can copy and modify.&amp;nbsp; I just did this with 2110, but not tested yet.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/flexconfig_policies.html?bookSearch=true" target="_self"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/flexconfig_policies.html?bookSearch=true&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 23 Aug 2018 13:29:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3693692#M132786</guid>
      <dc:creator>Terry Grant</dc:creator>
      <dc:date>2018-08-23T13:29:04Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Redirection on Firepower FTD 4110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3693964#M132789</link>
      <description>&lt;P&gt;Actually am facing some challenges to customize it ,can you paste what you have done please and replace password or ip with x.x.x.x&lt;/P&gt;</description>
      <pubDate>Thu, 23 Aug 2018 18:25:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3693964#M132789</guid>
      <dc:creator>vantom85cisco</dc:creator>
      <dc:date>2018-08-23T18:25:49Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Redirection on Firepower FTD 4110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3693986#M132792</link>
      <description>&lt;P&gt;I made a copy of the WCCP template and used it as it was, even used the same variable names.&amp;nbsp; Use the insert button to enter your variables.&amp;nbsp; Create your ACLs before editing the flex config so they are available to assign when you insert the variable.&amp;nbsp; Here is a screenshot, again I have not tested this config yet.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="wccp.PNG" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/17407i39E1B823A1ABD4DB/image-size/large?v=v2&amp;amp;px=999" role="button" title="wccp.PNG" alt="wccp.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 23 Aug 2018 18:59:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3693986#M132792</guid>
      <dc:creator>Terry Grant</dc:creator>
      <dc:date>2018-08-23T18:59:17Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Redirection on Firepower FTD 4110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3696945#M132796</link>
      <description>&lt;P&gt;I was able to do some testing and got the WCCP redirection working, with some TAC help.&amp;nbsp; The out of the box template had to be modified for this use case.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This was an FTD 2110 deployment, the client was not ready to use native URL filtering on the FTD, they wanted to continue to use a third party appliance via WCCP redirection.&lt;/P&gt;
&lt;P&gt;I used two FlexConfig objects to deploy the configuration for service 0 (http) and service 70 (https).&amp;nbsp; The FlexConfig deployed this CLI configuration to the FTD.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;wccp 0 redirect-list WS-Redirect group-list WS-Gateway&lt;BR /&gt;wccp 70 redirect-list WS-Redirect group-list WS-Gateway&lt;BR /&gt;wccp interface inside 0 redirect in&lt;BR /&gt;wccp interface inside 70 redirect in&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Aug 2018 12:30:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3696945#M132796</guid>
      <dc:creator>Terry Grant</dc:creator>
      <dc:date>2018-08-29T12:30:28Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Redirection on Firepower FTD 4110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3833291#M132798</link>
      <description>&lt;P&gt;When you created your variables, did you have to add one for the inside interface?&lt;/P&gt;</description>
      <pubDate>Fri, 05 Apr 2019 20:40:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3833291#M132798</guid>
      <dc:creator>Scott_22</dc:creator>
      <dc:date>2019-04-05T20:40:27Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Redirection on Firepower FTD 4110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3834186#M132799</link>
      <description>&lt;P&gt;No I didn't, the variable $interfacename was already in the template, just supply the appropriate name in the variables list of the template.&amp;nbsp; In this use case I used the security zone to reference the appropriate interface.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Apr 2019 12:38:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/3834186#M132799</guid>
      <dc:creator>Terry Grant</dc:creator>
      <dc:date>2019-04-08T12:38:35Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Redirection on Firepower FTD 4110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/4905904#M1103439</link>
      <description>&lt;P&gt;Can you post a pic where you set the service&amp;nbsp; = 0 please?&lt;/P&gt;</description>
      <pubDate>Tue, 15 Aug 2023 21:34:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-redirection-on-firepower-ftd-4110/m-p/4905904#M1103439</guid>
      <dc:creator>zac ragoonath</dc:creator>
      <dc:date>2023-08-15T21:34:15Z</dc:date>
    </item>
  </channel>
</rss>

