cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2186
Views
5
Helpful
3
Replies

Can you configure/modify Firepower access policies via CLI

martino-cisco
Level 1
Level 1

Hi All,

I have been managing a firepower module via ASDM and lost access to it because of an access policy.

Is it possible to create/modify an access policy from the SFR console CLI?

1 Accepted Solution

Accepted Solutions

Hi,

Thanks for your post. I had something similar already. I just forgot to update the post...but thanks for your suggestion. In my case, I just disabled the policy-map on the required interface temporarily to get back in.

 

Quite disappointing that there's no way to configure policies from the cli though. Hope this can be addressed at some point

View solution in original post

3 Replies 3

Marvin Rhoads
Hall of Fame
Hall of Fame

No you cannot. They are stored as database objects and manual configuration from the cli is not supported.

Hi Martino,

 

Wishing you a very happy new year.

Though it is and old post and by this time you must have resolved the issue.

 

In case not, Go ahead and to cli of asa an by pass the sfr module or put it in monitoring mode. 

 

After that you would be able to access sfr tab and you can eaisly correct your old policy.

 

Please mark the answer as helpful, if it resolves your issue. 

 

Br

Shivam 😊

Hi,

Thanks for your post. I had something similar already. I just forgot to update the post...but thanks for your suggestion. In my case, I just disabled the policy-map on the required interface temporarily to get back in.

 

Quite disappointing that there's no way to configure policies from the cli though. Hope this can be addressed at some point

Review Cisco Networking products for a $25 gift card