Migrating Cisco ASA 5525 to new ASA FTD using FMT and FMCv and remove from FMCv without losing configuration
I am replacing an existing ASA 5525 device with new ASA 5525 FTD. All configuration need to migrate into new box.
After successfully perform the migration (Using Firepower Migration Tool (FMT) and a temporary Virtual Firepower Management Center (FMCv), now I need to remove the FTD from the temporary FMC, without losing the configuration.
I did delete the FTD from FMC (Devices/Device Management) and access the FTD thru Console and enable local Manager (> Configure Manager Local). After restart the FTD, all migrated configuration gone and its in factory status (except Management Interface Config).
Existing ASA - Hardware: ASA5525, 8192 MB RAM, CPU Lynnfield 2394 MHz, 1 CPU (4 cores), ASA Version 9.8(3)29
New ASA - Cisco ASA5525-X Threat Defense (75) Version 220.127.116.11 (Build 7)
FMC - Cisco Firepower Management Center for VMWare Software Version 6.6.1
Is there any workaround that i can remove the FTD from FMC, without losing the configuration?
Do you mean you need the configuration on FTD after it is removed from FMC? That is, a standalone FTD (managed by on-the-box FDM). FTD config is wiped when switched to unmanaged. I don’t think there is a method to migrate the configuration to FDM.
Multiple Cisco Security Technologies in a single book : ASA Firepower, WSA, Umbrella, ISE and VPN with 100 percent 100 practical scenarios with 70 Labs to cover important topics of the Cisco SCOR Exam. The best part is ISE with interesting scenarios wi...
Cisco Umbrella is a big DNS service that provides not only the DNS resolution but also if the hosted website is trust or malicious, the idea behind the Layer DNS Security is that the modern attacks uses the DNS in the first step either to redirect the use...
I shared with you this detailed document I created with 27 pages about Cisco ISE Integration With F5 BIG-IP Locar Traffic Manager LTM Load Balancer for Guest Acces.
The method used for Guest Access is the Self-Registration.
Healt Monitor using HTTP...
I created an IPSEC Site to site Tunnel between two ASA Firewalls in EVE-NG topology and i want to plot the IPSEC Site to Site VPN graph on PRTG ? The SNMP Walk command is not getting any output . As the firewall is making SNMP inbound connections with the...
The purpose of this document is to demonstrate how ISE can integrate with an eduroam external server which is a WI-Fi roaming service that provides international access to devices in education, research, and higher education. Students, teachers, and resea...