<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic I have noticed the interface in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fxos-management-ip/m-p/3062648#M134302</link>
    <description>&lt;P&gt;I have noticed the interface use for management should be assigned to the asa from pool of interfaces&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;the management /rj45 used for the FW4110 is not used by the logical devices correct ?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Another question I have is , is there a difference between slot1 or slot 2?&lt;/P&gt;
&lt;P&gt;The FW has 3 x 8 ports SFP+.&lt;/P&gt;
&lt;P&gt;First 8 are built in , second and third are on a module named SSP.&lt;/P&gt;
&lt;P&gt;I guess they will have the same use as the first built in module&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;also to confirm, does FMC virtual support running two firewalls in HA?&lt;/P&gt;</description>
    <pubDate>Mon, 10 Jul 2017 13:12:09 GMT</pubDate>
    <dc:creator>cisco8887</dc:creator>
    <dc:date>2017-07-10T13:12:09Z</dc:date>
    <item>
      <title>FXOS Management IP</title>
      <link>https://community.cisco.com/t5/network-security/fxos-management-ip/m-p/3062645#M134299</link>
      <description>&lt;P&gt;All,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;When you create a logical device in FXOS , as part of it one adds a management IP like below&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;where is this used?&lt;/P&gt;
&lt;P&gt;I can't get my head around it as it is not pingable and what is is mapped to?&lt;/P&gt;
&lt;P&gt;Same applies to the password command&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Firepower /ssa/logical-device/mgmt-bootstrap* #&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="synph"&gt;&lt;SPAN class="kwd"&gt;create&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;ipv4&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="var"&gt;slot_id&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;firepower&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="synph"&gt;&lt;SPAN class="kwd"&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="synph"&gt;&lt;SPAN class="kwd"&gt;&lt;SPAN&gt;Specify the password to use for the logical device:&lt;/SPAN&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;SECTION class="p"&gt;Firepower /ssa/logical-device/mgmt-bootstrap* #&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="synph"&gt;&lt;SPAN class="kwd"&gt;create&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;bootstrap-key-secret&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;PASSWORD&lt;/SPAN&gt;&lt;/SPAN&gt;
&lt;P&gt;Firepower /ssa/logical-device/mgmt-bootstrap/bootstrap-key-secret* #&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="synph"&gt;&lt;SPAN class="kwd"&gt;set&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;value&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Value:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="synph"&gt;&lt;SPAN class="var"&gt;password&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="synph"&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="synph"&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="synph"&gt;is the parameters in the &amp;nbsp;end of the sentence "&lt;SPAN class="kwd"&gt;create&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;bootstrap-key-secret&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;PASSWORD" has to be the same as what cisco documents says ?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="synph"&gt;&lt;SPAN class="kwd"&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="synph"&gt;&lt;SPAN class="kwd"&gt;For instance you can type PASSWORD or&amp;nbsp;&lt;SPAN&gt;FQDN or DNS_Servers&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="synph"&gt;&lt;SPAN class="kwd"&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="synph"&gt;&lt;SPAN class="kwd"&gt;&lt;SPAN&gt;many thanks&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/SECTION&gt;
&lt;P&gt;&lt;SPAN class="synph"&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="synph"&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="synph"&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 09:40:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fxos-management-ip/m-p/3062645#M134299</guid>
      <dc:creator>cisco8887</dc:creator>
      <dc:date>2019-03-12T09:40:00Z</dc:date>
    </item>
    <item>
      <title>The management IP is the</title>
      <link>https://community.cisco.com/t5/network-security/fxos-management-ip/m-p/3062646#M134300</link>
      <description>&lt;P&gt;The management IP is the address of the management interface of the logical device (ASA or FTD). It won't be up until the logical device is fully initialized and, in the case of an ASA logical device, the interface is configured to be "no shut". You need to be sure to allocate a physical&amp;nbsp;interface from the chassis to the management interface.&lt;/P&gt;
&lt;P&gt;The bootstrap-key-secret PASSWORD is a mechanism designed to better secure the boot process. I'm not positive but I don't believe it's mandatory to use one.&lt;/P&gt;</description>
      <pubDate>Fri, 07 Jul 2017 02:07:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fxos-management-ip/m-p/3062646#M134300</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-07-07T02:07:00Z</dc:date>
    </item>
    <item>
      <title>This is the same interface</title>
      <link>https://community.cisco.com/t5/network-security/fxos-management-ip/m-p/3062647#M134301</link>
      <description>&lt;P&gt;This is the same interface that would be talking to FMC.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 07 Jul 2017 05:41:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fxos-management-ip/m-p/3062647#M134301</guid>
      <dc:creator>prashant dwivedi</dc:creator>
      <dc:date>2017-07-07T05:41:54Z</dc:date>
    </item>
    <item>
      <title>I have noticed the interface</title>
      <link>https://community.cisco.com/t5/network-security/fxos-management-ip/m-p/3062648#M134302</link>
      <description>&lt;P&gt;I have noticed the interface use for management should be assigned to the asa from pool of interfaces&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;the management /rj45 used for the FW4110 is not used by the logical devices correct ?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Another question I have is , is there a difference between slot1 or slot 2?&lt;/P&gt;
&lt;P&gt;The FW has 3 x 8 ports SFP+.&lt;/P&gt;
&lt;P&gt;First 8 are built in , second and third are on a module named SSP.&lt;/P&gt;
&lt;P&gt;I guess they will have the same use as the first built in module&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;also to confirm, does FMC virtual support running two firewalls in HA?&lt;/P&gt;</description>
      <pubDate>Mon, 10 Jul 2017 13:12:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fxos-management-ip/m-p/3062648#M134302</guid>
      <dc:creator>cisco8887</dc:creator>
      <dc:date>2017-07-10T13:12:09Z</dc:date>
    </item>
    <item>
      <title>Correct - the management</title>
      <link>https://community.cisco.com/t5/network-security/fxos-management-ip/m-p/3062649#M134303</link>
      <description>&lt;P&gt;Correct - the management ports built into the chassis (SFP Ethernet and console) are not for managing the logical device.&lt;/P&gt;
&lt;P&gt;You can session to a logical device once you log into the chassis but they aren't generally intended for that purpose.&lt;/P&gt;
&lt;P&gt;Whether you use the built in SFP+ interfaces or those on an expansion module is up to you. Given the cost of the expansion modules most people don't go onto those until they run out of ports in the base unit.&lt;/P&gt;
&lt;P&gt;I answered in the other thread but yes - FMC can support multiple firewalls in HA, clustered or otherwise. You are restricted only by what is licensed for.&lt;/P&gt;</description>
      <pubDate>Mon, 10 Jul 2017 15:49:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fxos-management-ip/m-p/3062649#M134303</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-07-10T15:49:19Z</dc:date>
    </item>
  </channel>
</rss>

