01-25-2017 02:12 PM
Hi Guys
I've doubt regarding FTD, I hope you can clarify me.
In platform Firepower v5.4, that can manage ASA 5500-X (FirePOWER Services only). I've a project that customer have around 30 Cisco ASA of 5505, 5510, and we're proposing a replacement, I'm considering 5506 using only Firewall services (ASA image).
My question is, FTD can manage this? Or I need to use Multidevice Cisco Security Manager .
If anyone can help me would be great .
Best Regards
01-27-2017 10:05 AM
Please see the below Cisco Firepower Compatibility Guide. It seems that you will be requiring Firepower 6.0.1, 6.1 or 6.2 to manage FTD on ASA 5506.
Cisco Firepower Compatibility Guide - Cisco
Hope to help.
02-06-2017 07:17 PM
If you're only managing security policy on the ASAs (Layer 4 type policy, five-tuple ACL and NAT , VPN) you're really better off with CDO.
If you don't intend to run Firepower Services (Threat, AMP, URL)
02-07-2017 04:24 PM
I guess, Best thing can be done here if you dont have FMC hardware, install it on the VM, add the remote ASA ( have software based SFR modules). There you can add the licensing as per requirement i;e protection,control, AMP etc at FMC for each remote SFR
02-08-2017 01:04 AM
HI Guys
Thanks for the feedback.
I propose Cisco Defense Orchestrator for ASA5506, that was the better solution I found in this case, because the competion is proposing a FWaaS.
Thank you all.
Kind Regards
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide