09-23-2020 01:17 PM
We're looking at migrating our ASA-5510 to a Firepower 2110. Is there a path to convert the existing configuration to something that can be imported into the Firepower? Thanks
Solved! Go to Solution.
09-23-2020 01:19 PM
You can use the Firepower Migration Tool (FMT) to migrate the ASA configuration to FTD.
https://www.cisco.com/c/en/us/products/security/firewalls/firepower-migration-tool.html
HTH
09-23-2020 01:21 PM
you have FTD Migration tool, but if the rule base is not too big, I do it manually and you get the opportunity to review the rules and get rid of organically grown unnecessary rules. when you moving to a new kit.
09-23-2020 01:19 PM
You can use the Firepower Migration Tool (FMT) to migrate the ASA configuration to FTD.
https://www.cisco.com/c/en/us/products/security/firewalls/firepower-migration-tool.html
HTH
09-23-2020 01:21 PM
you have FTD Migration tool, but if the rule base is not too big, I do it manually and you get the opportunity to review the rules and get rid of organically grown unnecessary rules. when you moving to a new kit.
09-23-2020 01:36 PM
Thanks, both of you. I'll experiment with the tool to see how it goes. We have about 40 explicitly defined rules, but we were liberal with object-groups. It seemed pretty tedious to do this manually, but we do need to review the rules. We'll clean up the configuration as much as possible before running through the tool. Take care.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide