Multi domain network accessing internet via single FirePower

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
09-29-2016 05:53 PM - edited 03-12-2019 06:08 AM
Hi,
did anyone implemented FirePower on the network where users are from two different domains and they are accessing the internet via one single FirePower?
It seems that Access Rules can be applied only to one FirePower appliance/module and linked only to one Identity Policy which can have only one rule with realm. Identity Policy can contain two rules for each realm but since all users are accessing from the same network/subnet I can't use both because both rules have same src IP, dst IP, src zone, dst zone etc.
I have now two realms in FireSight and receiving logon/logoffs for these two realms from User Agent but I'm unable to apply both realms on one Identity Policy and therefore I can do URL filtering only for either of these groups it depends which realm I will add to Identity Policy.
Thanks for any feedback.
- Labels:
-
NGIPS
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-06-2016 08:28 AM
Any luck so far?
I'm looking for integrate the Firepower with multiple different domains, but so far I found this (not exactly what I'm looking for):
http://www.labminutes.com/sec0225_asa_firepower_60_multiple_domain_management_2
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-11-2019 01:37 AM
Hi guys, Did you find answers for this issue?
