10-17-2024 03:56 AM
Dears,
we will replace our Cisco FTD box series 2000 with a new one series 3000 managed by FMC is there any document with steps to make this migration
Solved! Go to Solution.
10-17-2024 12:03 PM
I have done this a few times and it is not difficult. For this process you will only need a unique IP for the management interface. Here is what I did.
10-17-2024 04:22 AM
Here's an extremely high level of how I would do it:
10-17-2024 08:44 AM - edited 10-17-2024 08:44 AM
I don't have any documentation at handy for this, sorry, but I think the latest Cisco firewall migration tool would allow you to migrate from FTD to FTD, you could explore that as an option. However, as mentioned by @ahollifield the easiest way would be to stage the new firewall with all the initial settings, and then register it to the FMC and apply all the required policies to it. One thing to keep in mind is that if you have any packages/profiles such as AnyConnect/Secure Client installers/profiles on the 2000 firewall then you would need to move those to the 3000 firewall. Also, if you have identity certificates on the 2000 then you would need to regenerate those ones for the 3000 firewall.
10-17-2024 12:03 PM
I have done this a few times and it is not difficult. For this process you will only need a unique IP for the management interface. Here is what I did.
10-18-2024 05:24 AM - edited 10-18-2024 05:25 AM
There is a new wizard in FMC 7.4+ that handles 95% of this for you automatically.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide