cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1342
Views
5
Helpful
1
Replies

Cisco FMC: Migration to new hardware

leo-falconi
Level 1
Level 1

Hello community,

I have to migrate my 14 HA pairs of FTD from a FMC2000 to a HA pairs of FMC2600.

Both the platform have the same version 6.4.0.4.

 

From the FMC Configuration Guide I read that the Import/Export could copy these configurations from a platform to another.

  • Access control policies and the policies they invoke: prefilter, network analysis, intrusion, SSL, file, Threat Defense Service Policy

  • Intrusion policies, independently of access control

  • NAT policies (Firepower Threat Defense only)

  • FlexConfig policies. However, the contents of any secret key variables are cleared when you export the policy. You must manually edit the values of all secret keys after importing a FlexConfig policy that uses secret keys.

  • Platform settings

  • Health policies

  • Alert responses

  • Application detectors (both user-defined and those provided by Cisco Professional Services)

  • Dashboards

  • Custom tables

  • Custom workflows

  • Saved searches

  • Custom user roles

  • Report templates

  • Third-party product and vulnerability mappings

My questions are...

1) What is the correct procedure to migrate a FTD HA pair from a FMC to another?

2) Will be maintained the configurations of the interfaces (example IP address...)?

 

Best regards,

Leonardo

1 Reply 1

nspasov
Cisco Employee
Cisco Employee

Hello Leonardo

This process was greatly improved/simplified with the release of the "FMC model migration" feature in version 6.5. For more information about this please take a look at the link below:

https://www.cisco.com/c/en/us/td/docs/security/firepower/fmc_model_migration/b_FMC_Model_Migration_Guide/migrate_your_fmc.html 

I hope this helps!

Thank you for rating helpful posts!

Thank you for rating helpful posts!
Review Cisco Networking for a $25 gift card