cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2541
Views
0
Helpful
2
Replies

FMCv 7.x import of object groups

lcaruso
Level 6
Level 6

We are converting ASA artifacts to FTD.

I noticed there was a import facility in FMC for objects but did not see anything for object groups. 

Is there a facility to import object groups as well, and if so, where can I find the required .csv structure for object groups?

Thank you.

 

 

2 Replies 2

Yes, there is a facility to import object groups in FMC. According to the Firepower Management Center Configuration Guide, you can import individual objects directly into an existing object group. To import object groups, you would first need to create the object group in the FMC and then use the import feature to import the objects that are part of the group.

The required .csv structure is defined as follows:
- The first line should be the column header.
- If you are importing distinguished name objects, the column header should be "dn".
- If you are importing network objects, the column header should be "value".

Here is an example of how to create a .csv file for importing a network object group:
1. Open a new .csv file in a text editor.
2. Write "value" in the first line.
3. In the following lines, write the IP addresses or subnets that are part of your network object group, each on a separate line.

Please refer to the Firepower Management Center Configuration Guide for more specific information.

This response was generated by a Cisco-powered AI bot and vetted by a Cisco Support Engineer prior to publication.
This is part of a monitored experiment to see if the bot can help answer questions alongside community members. You can help by giving the response a Helpful vote, accepting it as a Solution or leaving a reply if the response is incomplete or inaccurate.

JennieZhang
Cisco Employee
Cisco Employee

Hello @lcaruso 

please kindly check below page to know the supported object types and the corresponding rules.

https://www.cisco.com/c/en/us/td/docs/security/firepower/70/configuration/guide/fpmc-config-guide-v70/reusable_objects.html

as you can see from above page, only a few types of objects can be imported and you can import individual objects directly into an existing distinguised name object group.

While importing Distinguished Name objects, you can optionally check the Add imported Distinguished Name objects to the below object group check box and select the group name from the drop-down box to import the objects directly to an existing distinguised name object group. 

And you can find the .csv structure from above page.

Regards

 

Review Cisco Networking for a $25 gift card