<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Migrating ASA to FTD in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3802575#M990983</link>
    <description>&lt;P&gt;&lt;SPAN&gt;Hello Cisco&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV dir="auto"&gt;My ASA is in Active/Standby and my Ftd boxes have to be in HA as well:&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;1)Is an FMC or FMCv mandatory to perform HA on FTD?&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;2)Do i need to configure HA on my FTD boxes before migrating the ASA Configuration? If not, Can the migrated file be uploaded on just one box then we configure HA for config sync?&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;3)Can i migrate the ASA configuration with the Migration Tool then export it from the Firepower Device Manager for each box?&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;4) Finally do i need any specific license?&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;Thanks for your return.&lt;/DIV&gt;</description>
    <pubDate>Fri, 21 Feb 2020 16:49:14 GMT</pubDate>
    <dc:creator>dvalinho</dc:creator>
    <dc:date>2020-02-21T16:49:14Z</dc:date>
    <item>
      <title>Migrating ASA to FTD</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3802575#M990983</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hello Cisco&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV dir="auto"&gt;My ASA is in Active/Standby and my Ftd boxes have to be in HA as well:&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;1)Is an FMC or FMCv mandatory to perform HA on FTD?&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;2)Do i need to configure HA on my FTD boxes before migrating the ASA Configuration? If not, Can the migrated file be uploaded on just one box then we configure HA for config sync?&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;3)Can i migrate the ASA configuration with the Migration Tool then export it from the Firepower Device Manager for each box?&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;4) Finally do i need any specific license?&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV dir="auto"&gt;Thanks for your return.&lt;/DIV&gt;</description>
      <pubDate>Fri, 21 Feb 2020 16:49:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3802575#M990983</guid>
      <dc:creator>dvalinho</dc:creator>
      <dc:date>2020-02-21T16:49:14Z</dc:date>
    </item>
    <item>
      <title>Re: Migrating ASA to FTD</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3803457#M990984</link>
      <description>&lt;P&gt;1. As of release 6.3 you can now do High Availability with either FMC or the local firepower Device Manager (FDM).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;2. You can configure either way - start with migrating to standalone and then make it HA or migrate direct to HA.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;3. If you use the migration tool (vs. manual migration) then you have to use FMC.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;4. No. Note that when in HA, &lt;STRONG&gt;each&lt;/STRONG&gt; FTD device requires the relevant feature licenses such as Base, URL Filtering or Malware.&lt;/P&gt;</description>
      <pubDate>Sun, 17 Feb 2019 03:41:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3803457#M990984</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-02-17T03:41:10Z</dc:date>
    </item>
    <item>
      <title>Re: Migrating ASA to FTD</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3807478#M990985</link>
      <description>&lt;P&gt;Thanks Marvin for your return, it is helpful.&lt;/P&gt;
&lt;P&gt;Let's say i go for the manual migration from ASA-X to FTD 4100. Do i need to collect VPN Pre-shared keys or other keys or can I just copy and paste from the old config file?&lt;/P&gt;</description>
      <pubDate>Fri, 22 Feb 2019 09:23:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3807478#M990985</guid>
      <dc:creator>dvalinho</dc:creator>
      <dc:date>2019-02-22T09:23:28Z</dc:date>
    </item>
    <item>
      <title>Re: Migrating ASA to FTD</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3807515#M990986</link>
      <description>&lt;P&gt;For VPN pre-shared keys you need to have them in plain text. You can retrieve them from the ASA if you get the running-config using the command:&lt;/P&gt;
&lt;PRE&gt;more system:running-config&lt;/PRE&gt;
&lt;P&gt;If your ASA is using a CA-signed certificate that will have to be rehosted on the new appliances. Unless you have the original&amp;nbsp; private key used (e.g. if you used OpenSSL to create the original CSR) or made it exportable when you first created it, you will have to regenerate a CSR and get the CA to issue the certificate.&lt;/P&gt;</description>
      <pubDate>Fri, 22 Feb 2019 10:25:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3807515#M990986</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-02-22T10:25:40Z</dc:date>
    </item>
    <item>
      <title>Re: Migrating ASA to FTD</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3809128#M990987</link>
      <description>&lt;P&gt;Thank you so much.&lt;/P&gt;
&lt;P&gt;One last question, can the FMCv can do the same job the FMC do(in regard to the migration tool)??&lt;/P&gt;</description>
      <pubDate>Mon, 25 Feb 2019 15:45:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3809128#M990987</guid>
      <dc:creator>dvalinho</dc:creator>
      <dc:date>2019-02-25T15:45:51Z</dc:date>
    </item>
    <item>
      <title>Re: Migrating ASA to FTD</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3809154#M990988</link>
      <description>&lt;P&gt;FMCv vs. FMC physical appliance are equivalent with respect to migration tool functionality.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The physical appliances can themselves be configured as HA and have increased scalability (for managing more sensors and ingesting and storing more events). Other than that, they are functionally equivalent.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Feb 2019 16:11:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3809154#M990988</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-02-25T16:11:50Z</dc:date>
    </item>
    <item>
      <title>Re: Migrating ASA to FTD</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3809588#M990989</link>
      <description>&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Feb 2019 06:21:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-to-ftd/m-p/3809588#M990989</guid>
      <dc:creator>dvalinho</dc:creator>
      <dc:date>2019-02-26T06:21:38Z</dc:date>
    </item>
  </channel>
</rss>

