09-25-2024 03:01 PM - edited 09-25-2024 04:36 PM
Hello,
I have a firewall 1120 ASA series and I am not understanding how the initial device works. I first want to change the management IP. Is that going to be Managment1/1 interface? Assuming it is, I can ping that new ip i made. How do I ssh to the fw to make changes. Is that going to be on the management IP? Or do I have to elevate to the ASA and configure another ip?
09-25-2024 05:57 PM
Not sure if this NAC Community forum is the right place for this firewall question. Normally (in my experience) is that you must configure the firewall using a console cable. And once the IP address is set, you don't want to change it in future. If you must change the management IP in future, then you might want to add an additional interface to the firewall, SSH to that, and then change the IP of the first interface. You don't want to cut yourself off. As for which 1120 interface is best used for management, I'd check the docs and perhaps as the firewall forum folks for best practices.
09-26-2024 02:11 AM
Please take a look at this guide:
Cisco Firepower 1100 Getting Started Guide - ASA Deployment with ASDM [Cisco Firepower 1000 Series] - Cisco
09-26-2024 12:36 PM
Yes it is. You SSH to the management IP. Or you can enable SSH on any other interface you like. Also why ASA and not FTD?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide