04-05-2018 09:06 AM - edited 02-21-2020 07:36 AM
Is the main difference between FPS and FTD that with FTD as far as management of the ASA goes that object/ACE creation will need to be done from the FMC itself and not possible through an ASDM or CLI? Is it the goal of Cisco to eliminate IOS/CLI access?
It has been awhile for me since I worked within firepower and FTD at that time was spoken of but not quite there yet for production deployments. What is the current status of FTD and obviously as asked above is my perceivement wrong?
04-08-2018 02:37 AM
It's a bit more than the management. FTD basically combines the asa and sourcefire code into one image so there is no need for a software or hardware module in the firewall. I wouldn't say it is their goal to eliminate CLI but it was an unfortunate conclusion that was reached. CLI configuration is not possible as of now (with some cli operations being the exception) and all configuration must be done from FMC or FDM UI.
As of now I would say it is worth taking a look at, since it will be the way forward in ciscos firewall strategy. Ofc there are still some limitations that you should keep in mind:
Hope that helps. :)
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide