01-22-2020 02:34 PM
Hi! We just install a FMC server on our corporate office. A new branch was open on a different city and they got a FTD-2110...
How do I add this remote device to my FMC? I've already did
>configure manager add <my.corporate.network.ip> <reg_key>
the FTD says "Pending"
the FMC never registered the FTD
I've also noticed that if I do:
>configure manager delete
>configure manager local
All my interfaces are shutdown....
01-22-2020 02:41 PM - edited 01-22-2020 02:57 PM
HI,
Whenever you change the management mode, it is going wipe out the config and thats the reason your interface shut down when you make config manager delete and conf manager local.
What are the steps you are following ? Please see the attached example if required.
FMC management and FTD Management are reachable to each other ?
01-22-2020 03:33 PM
here is blog covers registering FTD with FMC
make sure FMC and FTD has reachability.
01-22-2020 05:07 PM
01-22-2020 07:05 PM
Hi,
You cannot register remote FTD's to local one FDM. FDM is local device manager and each device will be having unique management interface.
If you want centralize management then you can go with either FMC ( virtual/physical appliance) or CDO ( Cloud based orchestration tool). It seems currently you don't have any other management option so you have to configure your devices from their local FDM Page.
First thing, setup your Box and make your FDM page up and running. You can get the instruction from below link. Steps are same for firepower 1000 and 2000 series but I am posting links for both. With below guides, you will be able to make your device up and running.
Firepower 2100: https://www.cisco.com/c/en/us/td/docs/security/firepower/quick_start/fp2100/firepower-2100-gsg/ftd-fdm.html
Firepower 1000: https://www.cisco.com/c/en/us/td/docs/security/firepower/quick_start/fp1010/firepower-1010-gsg/ftd-fdm.html
Once above is done, you need to configure IPSEC by following simple wizards. Follow below guide for it:
Keep us posted if you encounter any issue.
once both devices are
01-23-2020 12:23 AM
But your original post was different than what you described now.
anyway, you would like to Manage Local FTD with FDM, depends on how you have done your initial setup if you choose that this device managed FMC or Locally?
FDM has Limited Features unlike Full Blown FMC Management kit like any other vendor.
here is onbox management :
VPN Site to Site For reference :
10-22-2020 06:43 AM
Hello,
we are also going to deploy 3 FTD clusters (v 6.4), respectively 2 1140s, 2 1120s, 2 1010s. We are going to deploy the virtual FMC on the main site with 1140s and the remote sites connected via IPSEC S2S.
Could you kindly share information on how to best deploy this solution?
Thank you very much.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide