cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2280
Views
0
Helpful
2
Replies

Firepower FMC/FTD and Elastic

Eric R. Jones
Level 4
Level 4

We have just deployed our FMC/FTD on 6.6.1 and have A10 sending our logs to Elastic. We have the logs going to the server via UDP but would like to use TLS per our requirements. I know I need certs from a CA and those certs must be the signed by the same CA on both ends of the connection.

Do I need to use the certs that exist on the Elastic server, the ones I pull for the FMC/FTD or does it matter as long as they are signed by a CA and are PKCS12?

 

ej

2 Replies 2

It doesn't matter as long as you have the right CA sequence installed.


**** please remember to rate useful posts

I've been looking for the proper CLI method to import the CA.

I should upload or copy paste the cert info into a file on the FTD then run "openssl pkcs## -info -in "filename"" ? 

I find plenty of examples of how to do this using FDM but we have FMC managing our HA FTD's and version 6.6.1 doesn't upload certs to the FTD according to the admin guide.

ej

Review Cisco Networking for a $25 gift card