03-07-2017 01:29 AM - edited 03-12-2019 02:01 AM
Hi,
I have recently purchased two ASA 5515x with Firepower services for our Company. But, I'm unable to access firepower services through ASDM.
Do I need to load firepower system software (asasfr-sys-6.2.0-362.pkg) into ASA in order to access it via ASDM?
I've also configured Failover(Active/Standby) , but I do not know how firepower services work in this situation. Do I need to configure anything in Firepower module in order to configure failover?
Please see attached screenshot.
Thanks
Solved! Go to Solution.
03-07-2017 03:47 AM
The 5515-X requires FirePOWER 6.0 or later in order to use ASDM-based management of the FirePOWER module. There are also some prerequisites with respect to the ASA and ASDM versions.
Only the 5506/08/16-X models are ASDM-manageable with 5.x (5.4.1.x in their case).
Reference:
http://www.cisco.com/c/en/us/td/docs/security/firepower/compatibility/firepower-compatibility.html#id_38014
03-07-2017 02:23 PM
You're welcome. Please mark your question as answered if it has been.
03-07-2017 02:27 AM
Your screenshots aren't appearing.
You can check your module version and readiness with the ASA cli command:
show module sfr detail
That aside, the FirePOWER service module requires its own setup and configuration apart from that of the ASA in which it is installed.
Please refer to the Quick Start Guide for details. Here is a link to it:
http://www.cisco.com/c/en/us/td/docs/security/asa/quick_start/sfr/firepower-qsg.html#pgfId-139878
Generally speaking the module needs to have connectivity and a basic setup to tell it how to reach remote systems. You set that up either via the console or using the ASDM Setup Wizard.
03-07-2017 03:31 AM
Hi Marvin,
Thanks for your reply.
Please see the output for
show module sfr detail
ciscoasa02# sh module sfr details
Getting details from the Service Module, please wait...
Card Type: FirePOWER Services Software Module
Model: ASA5515
Hardware version: N/A
Serial Number: FCH2017J0PA
Firmware version: N/A
Software version: 5.3.1-152
MAC Address Range: 0062.ecad.0c41 to 0062.ecad.0c41
App. name: ASA FirePOWER
App. Status: Up
App. Status Desc: Normal Operation
App. version: 5.3.1-152
Data Plane Status: Up
Console session: Ready
Status: Up
DC addr: No DC Configured
Mgmt IP addr: 172.27.150.5
Mgmt Network mask: 255.255.255.248
Mgmt Gateway: 172.27.150.2
Mgmt web ports: 443
Mgmt TLS enabled: true
Thanks
03-07-2017 03:47 AM
The 5515-X requires FirePOWER 6.0 or later in order to use ASDM-based management of the FirePOWER module. There are also some prerequisites with respect to the ASA and ASDM versions.
Only the 5506/08/16-X models are ASDM-manageable with 5.x (5.4.1.x in their case).
Reference:
http://www.cisco.com/c/en/us/td/docs/security/firepower/compatibility/firepower-compatibility.html#id_38014
03-07-2017 06:07 AM
Thanks Marvin!
03-07-2017 02:23 PM
You're welcome. Please mark your question as answered if it has been.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide