01-28-2020 02:39 PM - edited 02-21-2020 09:52 AM
I have the new generation firewall Cisco but I have two questions?
a) Is normal that the deploy is too slow ?
b) How to monitor VPNs?
The versión IOS is 6.5.0.
thanks for you help me!
Solved! Go to Solution.
01-28-2020 03:37 PM
A typical policy deployment takes 2-5 minutes. The latter time (or more) especially if you have an HA pair.
Site-site VPN monitoring is difficult with FMC as of the current 6.5. You do have the ability to use the show vpn-sessiondb command from the FTD device cli.
This will all change for the better going forward
01-28-2020 03:09 PM
Hi,
Are you using Fire Power Manager Center/FMC to manage your Firepower 2130. If yes then you will feel small delay which can be around 30-60 sec when you deploy. Actually in the back end FMC is communicating with the Firepower 2130 to deploy the configuration which you have just make.
To monitor the active VPN connections, you can goto Analysis, Users,->Active sessions, active sessions. You will see the one with VPN have authentication method specified as VPN Authentication. You can also filter your search from same page. Also for past connection, you can goto Analysis, Users,->Active sessions, users and further you can filter out your search.
I am attaching snapshot from 6.4 FMC which might look similar.
01-29-2020 10:25 AM
In advance I appreciate your response.
First answer, yes, I use FMC to administer the Fire power but in my case it take abauot 4 to 6 minutes to deploy.
Second answer, I was referring to VPN site to site, I do not have a summary of VPNS, for example only VPNs dashboard.
thanks
01-28-2020 03:37 PM
A typical policy deployment takes 2-5 minutes. The latter time (or more) especially if you have an HA pair.
Site-site VPN monitoring is difficult with FMC as of the current 6.5. You do have the ability to use the show vpn-sessiondb command from the FTD device cli.
This will all change for the better going forward
01-29-2020 10:31 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide