08-29-2018 12:34 AM - edited 02-21-2020 08:09 AM
Hi,
I need to configure an Firepower 2110 so that it has two Ouside interfaces.
Offcourse, I will put an Default Gateway route on interface Outside_1 and I wil have all my traffic go this direction. But I need e.g. that my second, Outside_2, interface be an AnyConnect gateway. What options do I have? I assume that FTD doesn't allow two active default routes to two different interfaces.
My idea is that I configure an Router with Source and destination NAT on Outside_2 interface so that the FTD only sees that Router on this Interface but this would be just too complicated. Is there any other solutions?
Thanks
Dejan
Solved! Go to Solution.
10-01-2018 03:32 AM
Hi,
I configured PBR over FlexConfig on this Firepower so it solved this problem. The FlexConfig was a little bit tricky to configure but at the end it’s functioning as expected. The issue that I think that I still have here is that the FlexConfig isn’t really supported. From the FMC Configuration Guide:
"FlexConfig features may become deprecated at any time. For fully guaranteed feature support, you must wait for Firepower Management Center support. When in doubt, do not use FlexConfig policies."
I hope the migration from FlexConfig will not be painfull...
08-29-2018 10:15 AM
10-01-2018 03:32 AM
Hi,
I configured PBR over FlexConfig on this Firepower so it solved this problem. The FlexConfig was a little bit tricky to configure but at the end it’s functioning as expected. The issue that I think that I still have here is that the FlexConfig isn’t really supported. From the FMC Configuration Guide:
"FlexConfig features may become deprecated at any time. For fully guaranteed feature support, you must wait for Firepower Management Center support. When in doubt, do not use FlexConfig policies."
I hope the migration from FlexConfig will not be painfull...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide