09-29-2016 05:53 PM - edited 03-12-2019 06:08 AM
Hi,
did anyone implemented FirePower on the network where users are from two different domains and they are accessing the internet via one single FirePower?
It seems that Access Rules can be applied only to one FirePower appliance/module and linked only to one Identity Policy which can have only one rule with realm. Identity Policy can contain two rules for each realm but since all users are accessing from the same network/subnet I can't use both because both rules have same src IP, dst IP, src zone, dst zone etc.
I have now two realms in FireSight and receiving logon/logoffs for these two realms from User Agent but I'm unable to apply both realms on one Identity Policy and therefore I can do URL filtering only for either of these groups it depends which realm I will add to Identity Policy.
Thanks for any feedback.
12-06-2016 08:28 AM
Any luck so far?
I'm looking for integrate the Firepower with multiple different domains, but so far I found this (not exactly what I'm looking for):
http://www.labminutes.com/sec0225_asa_firepower_60_multiple_domain_management_2
04-11-2019 01:37 AM
Hi guys, Did you find answers for this issue?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide