<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic tl;dr = correct! in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960362#M144625</link>
    <description>&lt;P&gt;tl;dr = correct!&lt;/P&gt;
&lt;P&gt;You're welcome.&lt;/P&gt;</description>
    <pubDate>Sat, 26 Nov 2016 14:06:57 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2016-11-26T14:06:57Z</dc:date>
    <item>
      <title>4110 cluster with ASA and FXOS</title>
      <link>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960357#M144606</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;noob here. We have created a functioning ASA cluster on our 4110's, and now we need to install FXOS.&lt;/P&gt;
&lt;P&gt;One of the engineers says we have to wipe the entire device in order to install FXOS, and honestly I don't know. I did find this this compatibility guide which indicates FXOS in compatible with ASA Version 9.6(2) (which is what we have installed).&lt;/P&gt;
&lt;P&gt;&lt;A href="http://www.cisco.com/c/en/us/td/docs/security/firepower/fxos/compatibility/fxos-compatibility.html" target="_blank"&gt;http://www.cisco.com/c/en/us/td/docs/security/firepower/fxos/compatibility/fxos-compatibility.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;My question: Is this correct and do I authorize the extra hours to wipe and re-configure?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks in advance,&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 08:35:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960357#M144606</guid>
      <dc:creator>john.borhek</dc:creator>
      <dc:date>2019-03-12T08:35:24Z</dc:date>
    </item>
    <item>
      <title>Perhaps there's some</title>
      <link>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960358#M144607</link>
      <description>&lt;P&gt;Perhaps there's some confusion in terms here.&lt;/P&gt;
&lt;P&gt;The 4100 series (and 9300) have FX-OS (FirePOWER eXtensible Operating System) as the operating system for the physical chassis. You cannot have functioning chassis without FX-OS running on it. FX-OS has a cli interface and a GUI. The GUI is FirePOWER Chassis Manager (FCM).&lt;/P&gt;
&lt;P&gt;From FCM one deploys logical devices - ASA and FirePOWER Threat Defense (FTD) are the two types of logical devices. &lt;SPAN&gt;The 4100 series supports only a single logical device as it only has a single Security Module (SM). (The 9300 can accommodate up to three.) So o&lt;/SPAN&gt;n a 4100 series you deploy one or the other logical device type exclusively. You still retain the underlying FX-OS and continue to manage the chassis via FCM in either scenario. Even upgrading FX-OS versions does not require re-imaging the ASA logical device.&lt;/P&gt;
&lt;P&gt;If you migrate from an ASA logical device to an FTD logical device, that requires deleting the ASA and re-deploying a new logical device using the FTD code image. The actual deployment is quick - under an hour even if it's your first one (assuming you have had the basic field engineer training or read the fine manual).&lt;/P&gt;
&lt;P&gt;Configuration of FTD is akin to an ASA plus a FirePOWER sensor and can be a bit more involved, especially if one if trying to migrate an extensive ASA configuration into the equivalent policies on FTD.&lt;/P&gt;
&lt;P&gt;(Edit - updated to reflect FCM nomenclature. There is a separate tool - FirePOWER Device Manager or FDM - used for on-box configuration of ASA appliances running the FTD image only.)&lt;/P&gt;</description>
      <pubDate>Sat, 26 Nov 2016 09:15:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960358#M144607</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-11-26T09:15:00Z</dc:date>
    </item>
    <item>
      <title>Good explanation, but you</title>
      <link>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960359#M144609</link>
      <description>&lt;P&gt;Good explanation, but you might wanna change Firepower Device Manager (FDM) to Firepower Chassis Manager (FCM).&lt;/P&gt;</description>
      <pubDate>Sat, 26 Nov 2016 09:15:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960359#M144609</guid>
      <dc:creator>Oliver Kaiser</dc:creator>
      <dc:date>2016-11-26T09:15:01Z</dc:date>
    </item>
    <item>
      <title>Servus Oliver!</title>
      <link>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960360#M144615</link>
      <description>&lt;P&gt;Servus Oliver!&lt;/P&gt;
&lt;P&gt;Good catch - I updated my post with the correction.&lt;/P&gt;</description>
      <pubDate>Sat, 26 Nov 2016 13:22:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960360#M144615</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-11-26T13:22:30Z</dc:date>
    </item>
    <item>
      <title>Thanks. Clarification helps a</title>
      <link>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960361#M144623</link>
      <description>&lt;P&gt;Thanks. Clarification helps a lot!&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;On 4100, only one logical device on the chassis: ASA or FTD&lt;/LI&gt;
&lt;LI&gt;FTD is roughly equivalent to ASA + FirePOWER Sensor&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Sat, 26 Nov 2016 14:04:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960361#M144623</guid>
      <dc:creator>john.borhek</dc:creator>
      <dc:date>2016-11-26T14:04:53Z</dc:date>
    </item>
    <item>
      <title>tl;dr = correct!</title>
      <link>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960362#M144625</link>
      <description>&lt;P&gt;tl;dr = correct!&lt;/P&gt;
&lt;P&gt;You're welcome.&lt;/P&gt;</description>
      <pubDate>Sat, 26 Nov 2016 14:06:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/4110-cluster-with-asa-and-fxos/m-p/2960362#M144625</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-11-26T14:06:57Z</dc:date>
    </item>
  </channel>
</rss>

