cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
354
Views
1
Helpful
2
Replies

Policy Situation while configuring a FMC HA

MSJ1
Level 1
Level 1

Hi,

I have a standalone FMC and will configure HA while creating another FMC.

Plan is to make the 2nd FMC as Secondary.

Question is , at intended Secondary FMC do I need to Import the policy from Intended Primary Node before I do the FMC HA Config or once I create the FMC HA Policy will be automatically created at Secondary FMC at the time of FMC HA configuration  ?

2 Replies 2

Marvin Rhoads
Hall of Fame
Hall of Fame

The Secondary unit will automatically sync everything from the Primary unit when they join together.

When you establish high availability between two Firepower Management Centers, the following configuration data is synced between them:

  • License entitlements

  • Access control policies

  • Intrusion rules

  • Malware and file policies

  • DNS policies

  • Identity policies

  • SSL policies

  • Prefilter policies

  • Network discovery rules

  • Application detectors

  • Correlation policy rules

  • Alerts

  • Scanners

  • Response groups

  • Contextual cross-launch of external resources for investigating events

  • Remediation settings

Review Cisco Networking for a $25 gift card