cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Bookmark
|
Subscribe
|
409
Views
1
Helpful
10
Replies

Cisco Firepower Management Center (FMC) Configuration

sumedh0991
Level 1
Level 1

Hello Community,

I have configured my Cisco Firepower Management Center (FMC) using the UI. Now I want to retrieve these configurations using any of the following methods,

  1. CLI
  2. API
  3. File Export

Also, I want to verify whether my device setup is correct.

Any guidance would be greatly appreciated.

Thanks!

10 Replies 10

Marvin Rhoads
Hall of Fame
Hall of Fame

FMC backups are done via the backup scheduling feature in the GUI. You can save backups locally on the FMC and copy them off to an external location as you like to setup a remote storage target so that the backups go there automatically. The backups are tar.gz files and not really easily human-readable though.

"Correct" varies widely according to what your requirements are.

Hello Mr. Marvin,

Why are we having N/A or manage under the chassis in FMC? Some will have the device's name under the chassis.

Example:

anuoluwapobankole_0-1743176259557.png

anuoluwapobankole_1-1743176279268.png

anuoluwapobankole_2-1743176301368.png

 

 

 

 

 

 

 

 

 

There are multiple modes of chassis and logical device across the different hardware platforms. You are seeing an artifact of that in your screenshots.

Hello sir, 

Are you saying it's a normal thing to see such under your chassis in FMC

Yes - completely normal and not a cause for concern.

Hello Sir,

So, why do we have different outputs for the various FTD devices in the chassis column, and what do you think the correct settings should be?

It's not a matter of you making settings. It's just a reflection that some platforms offer a separate chassis management function and others do not. Bottom line is that is is not anything that affects the device passing traffic and is generally not anything you need to be concerned about how it looks.

@anuoluwapo-bankole 

The cosmetic bug on the 1000 series is fixed in 7.7.0 (and should be included in the upcoming 7.6.1).

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwj80790

Thanks Marvin for the reply,

I'm not worried about the backup of the device.

I want the configuration to be fetched from the via command like "show running-config" that we used to do in the other Cisco devices or API.

 

@sumedh0991 are you asking about FTD device backup? You can get that via "show running-config" but it will not be 100% complete as it references objects that are not stored in human-readable plain text but rather as database entries. Same thing for the IPS rules, Security Intelligence lists etc.

Review Cisco Networking for a $25 gift card