cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1402
Views
0
Helpful
2
Replies

Multi domain network accessing internet via single FirePower

matyas.prokop
Level 1
Level 1

Hi,

did anyone implemented FirePower on the network where users are from two different domains and they are accessing the internet via one single FirePower?

It seems that Access Rules can be applied only to one FirePower appliance/module and linked only to one Identity Policy which can have only one rule with realm. Identity Policy can contain two rules for each realm but since all users are accessing from the same network/subnet I can't use both because both rules have same src IP, dst IP, src zone, dst zone etc.

I have now two realms in FireSight and receiving logon/logoffs for these two realms from User Agent but I'm unable to apply both realms on one Identity Policy and therefore I can do URL filtering only for either of these groups it depends which realm I will add to Identity Policy.

Thanks for any feedback.

2 Replies 2

Martin Bauer
Level 1
Level 1

Any luck so far?

I'm looking for integrate the Firepower with multiple different domains, but so far I found this (not exactly what I'm looking for): 

http://www.labminutes.com/sec0225_asa_firepower_60_multiple_domain_management_2

gerardtorin
Level 1
Level 1

Hi guys, Did you find answers for this issue?

Review Cisco Networking for a $25 gift card