02-12-2020 10:47 PM - edited 02-21-2020 09:55 AM
Actually We have one Chellange .
User is using all internal and internet access from Central Internet which is in MPLS Cloud , It is applied already for all branch location .
For example we will take one of the location .
User having GW confiugured in some PC which is pointing To Cisco Firepower and Cisco Firepower having connectivity to Internet Router which is local internet , Default Route configured in Cisco Firepower is toward MPLS (Core Switch )
SO EXACT Chellange would be like Below .
1st Path >> USER ----->Cisco Firepower ----> internet Router --> Internet (From this path user should access office 365 by configuring PBR)
2nd Path >> USER----->Cisco Firepower ---->Core Switch --> MPLS Cloud - Central Internet ( Rest of the traffic should go from this path )
Please let us know can we achieve this Chellange Cisco Firepower (FTD OS)
02-13-2020 11:10 AM
What you want is: application-aware routing. Viptela technology can do that:
What you have is: a traditional IP-based router. You can download the Office 365 IPv4 address list from
https://docs.microsoft.com/en-us/office365/enterprise/office-365-ip-web-service
and add static routes ( not PBR) for the Office 365 sites pointing to local Internet gateway. However, the list is dynamic (i. e. changes in time).
02-14-2020 02:49 AM
I haven't tried it but you should be able to pull the O365 addresses into an object using the following:
Then use that object in the PBR policy.
03-01-2020 09:49 PM - edited 03-01-2020 09:50 PM
Dear Team ,
once i will get all destination IP of O365 , it should have ipv4 address and ipv6 address also .
so can i add both in policy route .
is it require any other configuration for ipv6 destination or not ?
One more thing that other firewall vendor giving dynamic object like automatically update ip address for that object (cloud obeject )so when we will get it in cisco firepower ?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide