03-21-2022 11:57 PM
Hi all,
Currently we got FTD managed through FMC (6.7.0.3). Due to resource constrained, thinking of two options.
Option 1 - Install new security module to the chassis and add to the existing firewall(existing is 9300 SM-24 installed natively )
Can SM-24 and SM-40 be part of same chassis and be single firewall instance
Option 2 - Install a new SM-48 and restore the existing configuration to it.
what is the process of migrating to new security module
Cheers
Saj
Solved! Go to Solution.
03-22-2022 03:12 AM
Option 2 - Install a new SM-48 and restore the existing configuration to it. what is the process of migrating to new security module
personally i take this option.
03-22-2022 03:12 AM
Option 2 - Install a new SM-48 and restore the existing configuration to it. what is the process of migrating to new security module
personally i take this option.
03-22-2022 07:54 AM
I'd go with the SM-48 if that's an option. While you can install different SM types in a given 9300 chassis, they cannot be part of the same firewall logical device - either in HA or cluster configuration.
First I'd get everything to the current FXOS and recommended FMC/FTD releases. (FXOS currently at 2.11.1.154, FMC/FTD at 7.0.1.1/7.0.1 respectively.)
Backup the logical device configuration in FMC and then decommission the current SM-24:
Install the new SM, bootstrap FTD on it and then register/restore from FMC the configuration.
03-23-2022 01:33 AM
Thanks Marvin for the response. Really Appreciated.
Upgrade path wasn't very clear on the doco.....In terms of upgrade path:
> can I failover traffic to standby device
> export configuration
> re-initialise the new module
> import the config
> add to FMC
> at this stage one chassis will SM-24 and other chassis will have SM-48....can traffic failover back to SM-48?
Do i need to break the clustering to start with upgrade? Will there be total downtime during the migration?
Cheers
Saj
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide