cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1313
Views
5
Helpful
2
Replies

Cisco FMC Management - WEBGUI Alternative?

mattipler
Level 1
Level 1

Hey guys,

 

I suspect my question will result in a very quick answer... 

 

Is there an alternative to the WEB GUI for managing FTD firewalls through FMC? Coming from a background of utilising ASDM to manage FW infrastructure to using the FMC WEBGUI is beyond painful - it's absolutely dreadful.

 

Is there any other non-WEB GUI alternative? Something in the pipeline perhaps? Something more usable, accessible and intuitive like ASDM?  

 

Thanks guys. 

1 Accepted Solution

Accepted Solutions

nspasov
Cisco Employee
Cisco Employee

Hi Matt-

Is your main pain point with the FMC slowness? If yes, you can consider a couple of things to improve your experience:

1. Migrate to a physical appliance (If you are running virtual)

2. Dedicate more resources to the VM (If you are running virtual)

3. Log connection events to SIEM and not the the FMC

Now, to answer your question: Yes, Cisco is currently working on giving CDO (Cisco Defense Orchestrator) the ability to manage Firepower devices. It is currently being tested and it is anticipated to be released with version 6.4. In addition, you can utilize CDO to manage any existing ASAs and Umbrella:

https://docs.defenseorchestrator.com/Configuration_Guides/Devices_and_Services/Software_and_Hardware_Supported_by_CDO

More information on CDO:

https://www.cisco.com/c/en/us/products/security/defense-orchestrator/index.html

I hope this helps!

Thank you for rating helpful posts!

 

Thank you for rating helpful posts!

View solution in original post

2 Replies 2

nspasov
Cisco Employee
Cisco Employee

Hi Matt-

Is your main pain point with the FMC slowness? If yes, you can consider a couple of things to improve your experience:

1. Migrate to a physical appliance (If you are running virtual)

2. Dedicate more resources to the VM (If you are running virtual)

3. Log connection events to SIEM and not the the FMC

Now, to answer your question: Yes, Cisco is currently working on giving CDO (Cisco Defense Orchestrator) the ability to manage Firepower devices. It is currently being tested and it is anticipated to be released with version 6.4. In addition, you can utilize CDO to manage any existing ASAs and Umbrella:

https://docs.defenseorchestrator.com/Configuration_Guides/Devices_and_Services/Software_and_Hardware_Supported_by_CDO

More information on CDO:

https://www.cisco.com/c/en/us/products/security/defense-orchestrator/index.html

I hope this helps!

Thank you for rating helpful posts!

 

Thank you for rating helpful posts!

Fantastic! Thank you for your help. 

Review Cisco Networking for a $25 gift card