cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1669
Views
0
Helpful
1
Replies

FirePOWER on-box FDM - VPN w/certificates?

train_wreck
Level 1
Level 1

I've been considering whether to re-flash my ASA5506 with FTD, but I do not have an FMC and so would need to do all configurations on-box using the FDM. In the documentation here: https://www.cisco.com/c/en/us/td/docs/security/firepower/620/fdm/fptd-fdm-config-guide-620/fptd-fdm-s2svpn.html  I do not see a way to specify a VPN that uses certificates. I see that FDM DOES allow you to upload certificates to the device.

 

Is it not possible to specify cert-based VPN using FDM? Is an FMC really required for this?

1 Reply 1

balaji.bandi
Hall of Fame
Hall of Fame

As i understand the question correctly, FDM / FMC is only Mananges the Devices, the main VPN tunnel will be on the devices.

 

FMC give you flexibility maintain central database for change and pushing the policies across several FTD's across network or global.

 

if you have single device FDM can do the task for you. (again the URL provided no longer valid, not sure what you referring here).

 

If this not the case can you explain more. so it addressed properly.

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Review Cisco Networking for a $25 gift card