09-18-2017 08:23 PM - edited 02-21-2020 06:19 AM
Hello Experts.
I need your help to understand below two questions, I 'am new to FTD and FMC.
I will be dispatching 11 ASA 5525+TAMC license and One 5516+TAMC License. FMC image ver is 6.2.0.2
-ASA has come with sfr image 6.2.0, can i dispatch these FTD's by just configuring the management IP address and then add it to the FMC and then later push the update patch from FMC, WIll the FTD be able to register in FMC with the image 6.2.0. Or is there any compatibility issue between 6.2.0 and 6.2.0.2 [becuase, 6.2.0.2 is a patch and does not have boot and sys image and also once i console into sfr it is not giving me system install option anymore, it goes straight into ">" prompt ]
-Do i need to configure the DNS and Domain name before adding it to FMC, and will it get added without it and get synchronized with all the DNS and Domain setting from FMC once registered.
-Thanks
Solved! Go to Solution.
09-19-2017 06:24 AM
Generally FMC version has to be higher than FTD version. There are minimum versions as well though, so look through compatibility matrix to sort that out.
https://www.cisco.com/c/en/us/td/docs/security/firepower/compatibility/firepower-compatibility.html
Regarding minimum FTD version for 6.2.0.x FMC version: https://www.cisco.com/c/en/us/td/docs/security/firepower/620/6201/relnotes/Firepower_Release_Notes_Version_620x/management_capability.html
Long story short: yes, you will be fine leaving 6.2.0 as FTD version if the FMC is running 6.2.0.2. You will be able to install latest patch later via FMC.
Regarding DNS - you are better off by adding DNS information initially, because it is done via network configuration from the CLI, but you will be able to change it later anyway via #configure network dns command.
09-19-2017 06:24 AM
Generally FMC version has to be higher than FTD version. There are minimum versions as well though, so look through compatibility matrix to sort that out.
https://www.cisco.com/c/en/us/td/docs/security/firepower/compatibility/firepower-compatibility.html
Regarding minimum FTD version for 6.2.0.x FMC version: https://www.cisco.com/c/en/us/td/docs/security/firepower/620/6201/relnotes/Firepower_Release_Notes_Version_620x/management_capability.html
Long story short: yes, you will be fine leaving 6.2.0 as FTD version if the FMC is running 6.2.0.2. You will be able to install latest patch later via FMC.
Regarding DNS - you are better off by adding DNS information initially, because it is done via network configuration from the CLI, but you will be able to change it later anyway via #configure network dns command.
09-19-2017 04:20 PM
Thank You very much NIKO.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide