cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
4073
Views
10
Helpful
4
Replies

Configure "http redirect 80" in FMC

cmlozano8
Level 1
Level 1

Hi All,

 

I am struggling with this.  I want anyconnect users who accidentally go to http instead of https to be automatically redirected to https.  I believe the command "http redirect outside 80" will do this but I can't figure out where to do this in the fmc gui?  Has anyone done this?  We are using a FP2110.

 

Any assistance is appreciated.

 

Chris

2 Accepted Solutions

Accepted Solutions

mikael.lahtela
Level 4
Level 4
Hi,

Don't know it this is implemented in the gui yet.
If you don't find it you can still try and use flex config to add missing commands.

br, Micke

View solution in original post

Marvin Rhoads
Hall of Fame
Hall of Fame

I don't believe that particular feature is supported at this time in FMC. The "http..." command is blacklisted from use with Flexconfig (see below) and, as you noted, not available in the GUI.

 

https://www.cisco.com/c/en/us/td/docs/security/firepower/622/configuration/guide/fpmc-config-guide-v622/flexconfig_policies.html?bookSearch=true#reference_ztv_qvw_yx

View solution in original post

4 Replies 4

mikael.lahtela
Level 4
Level 4
Hi,

Don't know it this is implemented in the gui yet.
If you don't find it you can still try and use flex config to add missing commands.

br, Micke

Marvin Rhoads
Hall of Fame
Hall of Fame

I don't believe that particular feature is supported at this time in FMC. The "http..." command is blacklisted from use with Flexconfig (see below) and, as you noted, not available in the GUI.

 

https://www.cisco.com/c/en/us/td/docs/security/firepower/622/configuration/guide/fpmc-config-guide-v622/flexconfig_policies.html?bookSearch=true#reference_ztv_qvw_yx

Nice document Marvin, didn't even know Cisco had a blacklist on that. :)

br, Micke

Nick Ciesinski_
Level 4
Level 4

You can actually workaround the "http" block in FlexConfig

 

CSCvi81741

 

"http" is not available for editing in FMC/FTD FlexObject

 

Workaround:
"htt redirect outside 80" will work.

Review Cisco Networking for a $25 gift card