<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Deploy Firepowr 2140 as IPS-Only Mode in HA in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3721213#M986153</link>
    <description>&lt;P&gt;Well HA gives you just that - High Availability.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As of right now we don't have the option of Fail-To-Wire (FTW) interfaces on the 2100 series. So if the single unit fails, your&amp;nbsp;traffic through it will be blocked.&lt;/P&gt;</description>
    <pubDate>Mon, 08 Oct 2018 17:09:40 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2018-10-08T17:09:40Z</dc:date>
    <item>
      <title>Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720345#M985857</link>
      <description>&lt;P&gt;Is there way to configure the Firepower 2100 as NGIPS in HA. We need to deploy FPR 2140&amp;nbsp; without making any routing changes in adjacent devices.&lt;/P&gt;
&lt;P&gt;I can see the options only for Routed/Transparent Mode .&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 14:01:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720345#M985857</guid>
      <dc:creator>Ramkumar1988</dc:creator>
      <dc:date>2019-03-12T14:01:09Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720355#M985859</link>
      <description>&lt;P&gt;Have a look at this link for HA configuration for NGIPS firewalls.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firepower-management-center/212699-configure-ftd-high-availability-on-firep.html" target="_self"&gt;https://www.cisco.com/c/en/us/support/docs/security/firepower-management-center/212699-configure-ftd-high-availability-on-firep.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 06 Oct 2018 09:18:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720355#M985859</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2018-10-06T09:18:27Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720356#M985861</link>
      <description>Thanks for the update . Am looking for 2140 as  IPS-only to introduce in Network with HA</description>
      <pubDate>Sat, 06 Oct 2018 09:26:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720356#M985861</guid>
      <dc:creator>Ramkumar1988</dc:creator>
      <dc:date>2018-10-06T09:26:13Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720362#M986117</link>
      <description>&lt;P&gt;The document is for FTD 9000 series but the configuration remains the same for 2140 also.&lt;/P&gt;
&lt;P&gt;Here is a link for HA for FTD4100 but as mentioned configuration is the same for 2140.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://finkotek.com/cisco-4100-firepower-threat-defense-deploying-activestandby/" target="_self"&gt;https://finkotek.com/cisco-4100-firepower-threat-defense-deploying-activestandby/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 06 Oct 2018 10:18:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720362#M986117</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2018-10-06T10:18:37Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720578#M986131</link>
      <description>&lt;P&gt;Thanks Again ... Its explains about the HA part and am still looking for the options to enable IPS-Only Mode&lt;/P&gt;</description>
      <pubDate>Sun, 07 Oct 2018 10:20:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720578#M986131</guid>
      <dc:creator>prabakar1988</dc:creator>
      <dc:date>2018-10-07T10:20:55Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720837#M986135</link>
      <description>&lt;P&gt;What you are asking about is referred to as an inline pair transparent mode deployment.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please see the following references for implementation details:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/200924-configuring-firepower-threat-defense-int.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/200924-configuring-firepower-threat-defense-int.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/hw/firepower_device/firepower_7k8k_device/deployment.html#pgfId-1098121" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/hw/firepower_device/firepower_7k8k_device/deployment.html#pgfId-1098121&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Oct 2018 08:32:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720837#M986135</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-10-08T08:32:17Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720853#M986139</link>
      <description>Hi Marvin,&lt;BR /&gt;Yes .. exactly . This is what i am looking for .Also i worked in 8300 IPS where i am gonna configure the same features in 2100 . Thanks a lot for your response. Is there difference enabling the Inline Mode in Routed/Transparent mode. I guess both Modes will not require any adjacent device configuration . Any specific reason to choose Transparent . &lt;BR /&gt;&lt;BR /&gt;Also HA will be work like a FTD (since we are going to use it only for IPS)</description>
      <pubDate>Mon, 08 Oct 2018 08:47:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720853#M986139</guid>
      <dc:creator>Ramkumar1988</dc:creator>
      <dc:date>2018-10-08T08:47:51Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720886#M986147</link>
      <description>&lt;P&gt;The overall firewall can be routed or transparent.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Either way, as noted in the first link I provided: "When you configure an Inline Pair 2 Physical interfaces are internally bridged."&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You're correct&amp;nbsp; - they essentially act as a "bump in the wire" with IPS functionality.&lt;/P&gt;</description>
      <pubDate>Mon, 08 Oct 2018 10:02:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720886#M986147</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-10-08T10:02:38Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720895#M986150</link>
      <description>Thanks again Marvin! Is there any befit by configuring HA as I am going to use full IPS features set .</description>
      <pubDate>Mon, 08 Oct 2018 10:27:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3720895#M986150</guid>
      <dc:creator>Ramkumar1988</dc:creator>
      <dc:date>2018-10-08T10:27:59Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3721213#M986153</link>
      <description>&lt;P&gt;Well HA gives you just that - High Availability.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As of right now we don't have the option of Fail-To-Wire (FTW) interfaces on the 2100 series. So if the single unit fails, your&amp;nbsp;traffic through it will be blocked.&lt;/P&gt;</description>
      <pubDate>Mon, 08 Oct 2018 17:09:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3721213#M986153</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-10-08T17:09:40Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3721532#M986156</link>
      <description>&lt;P&gt;Data sheet for 2100 depicts that there is a FTW network module available for this platform . I am checking with Cisco to identify the appropriate modules.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/products/collateral/security/firepower-ngfw/datasheet-c78-736661.html" target="_blank"&gt;https://www.cisco.com/c/en/us/products/collateral/security/firepower-ngfw/datasheet-c78-736661.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also We will be deploying the Inline mode and will HA really help(will it be monitor the interface modules&amp;nbsp; to initiate the failover ) . I assume we dont need any sync interface between the Pair (as its a NGIPS) and kind of lan based failover.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Oct 2018 04:53:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3721532#M986156</guid>
      <dc:creator>Ramkumar1988</dc:creator>
      <dc:date>2018-10-09T04:53:03Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3721946#M986160</link>
      <description>&lt;P&gt;They did announce the FTW interfaces for the Firepower 2100 series but I don't believe they are shipping yet. I just checked the Cisco ordering tool and they don't show up as available in a Firepower 2140 NGFW configuration.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Building an HA pair will still require a failover link between the two appliances.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 09 Oct 2018 15:34:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3721946#M986160</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-10-09T15:34:54Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3721971#M986164</link>
      <description>Might be ! I couldn't see any FTW module from FXOS cli..also The failover will be in LINA engine ?&lt;BR /&gt;&lt;BR /&gt;Basically the device data interface will not have any IP address assignment and will be able to monitor/initiate failover ?</description>
      <pubDate>Tue, 09 Oct 2018 16:13:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3721971#M986164</guid>
      <dc:creator>Ramkumar1988</dc:creator>
      <dc:date>2018-10-09T16:13:42Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3721975#M986169</link>
      <description>&lt;P&gt;Correct the data plane interfaces don't have IP addresses in your use case.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The failover interfaces can be thought of as control plane. They will send heartbeats and other status along with configuration synchronization between the two appliances.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 09 Oct 2018 16:17:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3721975#M986169</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-10-09T16:17:05Z</dc:date>
    </item>
    <item>
      <title>Re: Deploy Firepowr 2140 as IPS-Only Mode in HA</title>
      <link>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3725233#M986171</link>
      <description>Thanks Marvin .. I am sorry for the delayed Response ...</description>
      <pubDate>Mon, 15 Oct 2018 04:02:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/deploy-firepowr-2140-as-ips-only-mode-in-ha/m-p/3725233#M986171</guid>
      <dc:creator>Ramkumar1988</dc:creator>
      <dc:date>2018-10-15T04:02:57Z</dc:date>
    </item>
  </channel>
</rss>

