04-21-2016 01:05 AM - edited 03-10-2019 06:36 AM
Hi good day to everyone, currently we are working on project with Firepower deployment. Our requirement is to utilize two FP 8350 appliance in HA (Active / Standby) with inline inpspection option.
I am confused about implementation with port channel, how to enable port-channel using inline mode to filter traffic from / to Datacenter. This FP is physically connected to ASA 5585X via two 10 GE and two 10 GE is connected with 68K. Now i need to put each two ports in one etherchannel. What will be the best practice for configuring FP in inline mode with port-channel.
ASA 5585X--------- ASA 5585 X (Active / Standby)
| | ||
FP 8350--------------FP 8350 (Active / standby)
|| ||
6807====VSS====6807
||
Server Farm
04-29-2016 08:17 AM
Hello Farhan,
Please refer the following user guide and see if that helps :-
http://www.cisco.com/c/en/us/td/docs/security/firesight/541/user-guide/FireSIGHT-System-UserGuide-v5401/IPS-Devices.html#pgfId-7177421
Regards
Jetsy
04-29-2016 08:20 AM
One more useful document for you.
http://www.cisco.com/c/en/us/support/docs/security/sourcefire-firepower-8000-series-appliances/117897-cinfig-sourcefire-00.html
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide