<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hello Team, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-traffic-redirection-to-firepower/m-p/2903658#M157046</link>
    <description>&lt;P&gt;Hello Team,&lt;/P&gt;
&lt;P&gt;For simple traffic redirection , please refer the following link and search for the keyword "&lt;SPAN style="font-size: 12pt;"&gt;Redirect Traffic to the SFR Module".&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/support/docs/security/asa-firepower-services/118644-configure-firepower-00.html&lt;/P&gt;
&lt;P&gt;Rate if the post helps you.&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Jetsy&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 08 Jul 2016 12:52:11 GMT</pubDate>
    <dc:creator>Jetsy Mathew</dc:creator>
    <dc:date>2016-07-08T12:52:11Z</dc:date>
    <item>
      <title>ASA traffic redirection to firepower</title>
      <link>https://community.cisco.com/t5/network-security/asa-traffic-redirection-to-firepower/m-p/2903655#M157037</link>
      <description>&lt;DIV&gt;In a typicall firewall we configure an ACL policy and then attach URL filtering or application control policy with that policy to take effect. With Cisco ASA firepower we need to configure the ASA first redirect the traffic to the service module which turns out to be a complete firewall and not just modules doing URL inspection etc, and configure everything from begining and assign filtering policies. logically the packet goes to one firewall which doesnt have nex gen features so it redirects to another firewall (sourcefire) which does the inspection and moves forward.&lt;/DIV&gt;
&lt;DIV&gt;&lt;/DIV&gt;
&lt;DIV&gt;Dont you think this approach is way differnet than other vendors? and also how much extra effort or time it takes for you on average to configure or manage an ASA firepower environment compared to others.&lt;/DIV&gt;</description>
      <pubDate>Tue, 12 Mar 2019 08:00:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-traffic-redirection-to-firepower/m-p/2903655#M157037</guid>
      <dc:creator>ring zer0</dc:creator>
      <dc:date>2019-03-12T08:00:12Z</dc:date>
    </item>
    <item>
      <title>we run several clients on ASA</title>
      <link>https://community.cisco.com/t5/network-security/asa-traffic-redirection-to-firepower/m-p/2903656#M157040</link>
      <description>&lt;P&gt;we run several clients on ASA 5585 with FirePower module using FireSight management. &amp;nbsp;I do not find it hard to configure or manage at all. &amp;nbsp;We use FirePower for URL filtering, IPS as well as AMP. Once everything was up and running I mainly just send URL category change requests to Brightcloud to unblock wrongly categorized websites. &amp;nbsp;On the very rare occasion I have to add new policies to accompany newly added sites. But even this is a piece of cake.&lt;/P&gt;
&lt;P&gt;The approach is not all that much different than other vendors. &amp;nbsp;Take CheckPoint for example. &amp;nbsp;There you need to buy licenses for blades to be able to use URL filtering. &amp;nbsp;Here the URL is already built into the firewall which is not the case with the ASA...yet. &amp;nbsp;But I would not be supprised to see the firewall functionality disappear from the FirePower ASA module. &amp;nbsp;&lt;/P&gt;
&lt;P&gt;Now, ofcourse if you have the FirePower appliance then you don't need a firewall in the mix as it can also do firewalling, but if you have an ASA and want to add IPS and URL filter then you just need to buy a license for these and you are good to go.&lt;/P&gt;
&lt;P&gt;--&lt;/P&gt;
&lt;P&gt;Please remember to select a correct answer and rate helpful posts&lt;/P&gt;</description>
      <pubDate>Thu, 07 Jul 2016 19:30:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-traffic-redirection-to-firepower/m-p/2903656#M157040</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2016-07-07T19:30:32Z</dc:date>
    </item>
    <item>
      <title>You can use the threat</title>
      <link>https://community.cisco.com/t5/network-security/asa-traffic-redirection-to-firepower/m-p/2903657#M157044</link>
      <description>&lt;P&gt;You can use the &lt;A href="http://www.cisco.com/c/en/us/td/docs/security/firepower/quick_start/5500X/ftd-55xx-X-qsg.html#pgfId-172315"&gt;threat defense image&lt;/A&gt;, so you just have one firewall to configure (check the prerequisites). Or you just allow all traffic on the ASA and redirect everything to firepower.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 08 Jul 2016 12:41:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-traffic-redirection-to-firepower/m-p/2903657#M157044</guid>
      <dc:creator>Marcel Maeder</dc:creator>
      <dc:date>2016-07-08T12:41:53Z</dc:date>
    </item>
    <item>
      <title>Hello Team,</title>
      <link>https://community.cisco.com/t5/network-security/asa-traffic-redirection-to-firepower/m-p/2903658#M157046</link>
      <description>&lt;P&gt;Hello Team,&lt;/P&gt;
&lt;P&gt;For simple traffic redirection , please refer the following link and search for the keyword "&lt;SPAN style="font-size: 12pt;"&gt;Redirect Traffic to the SFR Module".&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/support/docs/security/asa-firepower-services/118644-configure-firepower-00.html&lt;/P&gt;
&lt;P&gt;Rate if the post helps you.&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Jetsy&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 08 Jul 2016 12:52:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-traffic-redirection-to-firepower/m-p/2903658#M157046</guid>
      <dc:creator>Jetsy Mathew</dc:creator>
      <dc:date>2016-07-08T12:52:11Z</dc:date>
    </item>
    <item>
      <title>Thanks, this makes sense. I</title>
      <link>https://community.cisco.com/t5/network-security/asa-traffic-redirection-to-firepower/m-p/2903659#M157049</link>
      <description>&lt;P&gt;Thanks, this makes sense. I tried to find a doc which list all the features supported by FTD image but couldn't get one. Got some random information from different websites and found out that basic feature like VPN isn't even supported&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/firepower/601/6011/relnotes/firepower-system-release-notes-version-6011.html&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;They don't mention features supported like , is policy based routing or GRE interfaces or time based access control list etc. I couldn't find a doc which says all this, do&amp;nbsp; you think they have one?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 08 Jul 2016 20:27:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-traffic-redirection-to-firepower/m-p/2903659#M157049</guid>
      <dc:creator>ring zer0</dc:creator>
      <dc:date>2016-07-08T20:27:54Z</dc:date>
    </item>
  </channel>
</rss>

