cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

1639
Views
0
Helpful
8
Replies

FTD-PBR

Hello Community

i am tryig to do PBR flex config in my lab environment . 

1. I have 2 internal subnets 10.1.1.0 /24 and 192.168.1.0/24 

2. i want 10.1 should take isp-1 and 192.168 should take ISP-2

3. did extended ACL and tried Flex config , but getting error while save Flex-config-object . 

attached errors in attachment . 

Thanks in advance for any support or suggestions . 

 

8 REPLIES 8
Rob Ingram
VIP Mentor

Hi @Mahendervyas35821 

Route-map object creation in the FlexConfig object is blocked, but you can use route map objects defined in the object manager inside the template as variables.

 

Follow the instructions in the "How to configure Policy Based Routing" section.

https://www.cisco.com/c/en/us/td/docs/security/firepower/660/configuration/guide/fpmc-config-guide-v66/flexconfig_policies.html#reference_dhf_dyj_yx

 

Hi Rob , 

I followed this video on how to do . 

https://www.youtube.com/watch?v=lakHhw9CR5Y&t=285s

 

iam not sure if i missed anything . as you said Route-map object creation is blocked how can i unblock this . 

Sorry if i asked something wrong .

This Video show how to configure PBR using FMC FlexConfig.Correction: During Flex-Configuration, instead of applying Route-map on Ethernet 1/1 & Ethernet 1/3...
balaji.bandi
VIP Master

not sure variable splitting some errors, make sure there is no space or extra characted added.

follow below video step by step :

 

https://www.youtube.com/watch?v=lakHhw9CR5Y

 

BB

***** Rate All Helpful Responses *****

How to Ask The Community for Help

This Video show how to configure PBR using FMC FlexConfig.Correction: During Flex-Configuration, instead of applying Route-map on Ethernet 1/1 & Ethernet 1/3...

hi @balaji.bandi 

Followed exact same steps , iam not sure why this error throwing .

Not sure what version of FTD, may be old one dont like some syntax, as suggested, ratgher calling variable use direct command and test it.

BB

***** Rate All Helpful Responses *****

How to Ask The Community for Help

Mohammed al Baqari
VIP Advisor

Hi,

Not sure what version you are using but its a version that support PBR then
flex config PBR won't be accepted.

See this.

https://www.cisco.com/c/en/us/td/docs/security/firepower/660/fdm/fptd-fdm-config-guide-660/fptd-fdm-route-maps.html


***** please remember to rate useful posts

Hi @Mohammed al Baqari  ,

 iam using ftd 6.2.0 and fmc also 6.2.0

 

is there any docs to check which version support flex config with pbr . 

Hi,

6.2 doesn't support PBR of the box so flex should be working. Instead of
using variables '$' can you use absolute names and see if it works.

**** please remember to rate useful posts
Create
Recognize Your Peers
Polls
Which of these topics should we host an event in the Community?

Top Choice: pxGrid (35%)

Content for Community-Ad