cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1598
Views
0
Helpful
5
Replies

firepower 1000 series startup issue

kapydan88
Level 4
Level 4

Hello for everybody.

 

We are trying to install firepower 1120. Current problem is that we cant to connect device through static outside ip to internet and activate id token. Is there any additional steps for assigning a static external ip address instead of dhcp?

If i understood correctly, we need just change dhcp to static tab and specify the gateway. We dont need to create any acses lists and apply them to interfaces.

 

https://www.cisco.com/c/en/us/td/docs/security/firepower/640/fdm/fptd-fdm-config-guide-640/fptd-fdm-get-started.html#id_10209

5 Replies 5

Marvin Rhoads
Hall of Fame
Hall of Fame

I'm assuming you are managing your device which is running FTD image with Firepower Device Manager. In such a setup, it is the FTD appliance's management interface that needs to communicate with the Cisco portal. So it needs a gateway (which could be your inside interface) and, if it is using FTD itself for Internet access, you will need generally a basic NAT rule for outbound traffic.

Yes, we manage this fp1120 through firepower device managemet (https://192.168.1.1). We connect two cables like in this picture:

e1/1 - public static ip  - outside interfcae

e1/2 - internal ip (dhcp from 192.168.1.0/24 pool, in our case 192.168.1.5) - inside interface

 

If i understood correctly, in this particular case, firepower "think", that its default gateway is inside with 192.168.1.1 address. And we need to create nat rule for 192.168.1.0/24 network to connect to an external cisco portal?

 

Not sure you have FMC to configure FTD Device or you using Build in Device Manager to configure here :

 

these link help you to setup NAT :

 

https://www.cisco.com/c/en/us/support/docs/security/firepower-management-center/212702-configure-and-verify-nat-on-ftd.html

 

labminute nice video for step by steps :

 

http://www.labminutes.com/sec0242_ftd_61_nat_1

http://www.labminutes.com/sec0232_ftd_61_firepower_device_manager_configuration_1

 

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

we have only build in firepower device management

follow the labminute second URL video for FDM.

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Review Cisco Networking for a $25 gift card