cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
314
Views
0
Helpful
3
Replies

3120 wih FTD & ASA

tahscolony
Level 1
Level 1

Is it possible in multi-instance mode to run both the FTD and the ASA images?   Currently in the process of replacing both the 7125 IPS and the 5555-X firewalls with the 3120.

3 Replies 3

Firepower 9000 support mix asa and ftd 

But for 3000 series I suggest ask cisco about if this feature available or not.

MHM

Marvin Rhoads
Hall of Fame
Hall of Fame

No - mixed mode logical devices is NOT supported on the 3100 series not are their plans to do so.

As @MHM Cisco World noted, only the 9300 series supports that capability (by using separate hardware security modules).

tahscolony
Level 1
Level 1

Thanks guys. The documentation needs to be a bit more clear on the subject. 3100 series supports multi-instance, and states that each instance runs it's own image of software, but does not clarify whether it can be FTD & ASA on the same platform, but now that I have a 3120 on my desk, I can clearly see both images in firmware, and after trying to upgrade with failures due to a bug in the recommended ROMMON, when switching to ASA image, it wipes FTD and FXOS off the platform.  Then to get FTD it has to be re-imaged.  Either way though it does accomplish my end goal of an IPS in front of our routers and firewall, I just need to learn how to create a firewall that matches the current 5555-X on FTD. 

Review Cisco Networking for a $25 gift card