cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
363
Views
1
Helpful
5
Replies

Question about FMC

Hello everybody. I have questions about FMC and FirePower can you help me if you know?

1. What happens if i install FMC in my server as VM to configure my FirePower, and i reinstall FMC VM after server crashing? Configuration will be saved on FirePower of it will be erased after re-adding FirePower to FMC?

2. What will be the best practice to manage FirePowers from remote offices? For example I have FirePower in office A and FMC in office A. if I install FirePower in office B should i install new FMC to office B or it will be pretty if i add add remote FirePower to my FMC located in office A?

1 Accepted Solution

Accepted Solutions

1. What happens if i install FMC in my server as VM to configure my FirePower, and i reinstall FMC VM after server crashing? Configuration will be saved on FirePower of it will be erased after re-adding FirePower to FMC?
without backup and new FMC all config will be lost in FTD 
with backup and restore it to new FMC the FTD will not effect 

2. What will be the best practice to manage FirePowers from remote offices? For example I have FirePower in office A and FMC in office A. if I install FirePower in office B should i install new FMC to office B or it will be pretty if i add add remote FirePower to my FMC located in office A?
I will add to your Q 
can FTD manage by two FMC ? Yes it can if FMC is run HA

so siteA have FMCA and SiteB have FMCB 
the FTD in each site manage by only one FMC 


siteA have FMCA and SiteB dont have FMCB <<- if you have free FMC add it to SiteB if not there is no problem to control FTD in siteB via FMCA, in end this depend in your budget

MHM 

View solution in original post

5 Replies 5

Marvin Rhoads
Hall of Fame
Hall of Fame

An FMC instance should be backed up with the backup file(s) copied off of the VM. In the event that an FMC VM is lost (crash, corruption etc.) you must have a backup of the FMC to restore it - simply re-adding the devices managed by the previous instance will NOT upload their running configurations to the new FMC instance.

Ruben Cocheno
Spotlight
Spotlight

@sherali mamatkarimov

Also try to push the first config out during a maintenance window

Tag me to follow up.
Please mark it as Helpful and/or Solution Accepted if that is the case. Thanks for making Engineering easy again.
Connect with me for more on Linkedin https://www.linkedin.com/in/rubencocheno/

Eric R. Jones
Level 4
Level 4

Your second question answered.

You can have site A say in Los Angeles with an FMC and multiple Firepower FTD devices.

You can have site B say in San Diego with multiple Firepower FTD devices.

You can controll them all via the FMC in Los Angeles and offer access to techs in both locations to manage all devices.

 

As long as you have a current backup of the FMC, getting it back up and running is not an issue. 

One FMC can manage several FTDs so you do not need to install a second FMC.  Just add it to your current FMC.  Just a suggestion, depending on ease of access to the FTD device at the remote location and the technical knowledge of those that might be assisting you in troubleshooting or replacing the FTD at the remote site, managing the FTD through the Data interface is the way to go.  I have several FTDs in remote locations which were previously managed over a site to site VPN and getting help for console / CLI access was a nightmare.

--
Please remember to select a correct answer and rate helpful posts

1. What happens if i install FMC in my server as VM to configure my FirePower, and i reinstall FMC VM after server crashing? Configuration will be saved on FirePower of it will be erased after re-adding FirePower to FMC?
without backup and new FMC all config will be lost in FTD 
with backup and restore it to new FMC the FTD will not effect 

2. What will be the best practice to manage FirePowers from remote offices? For example I have FirePower in office A and FMC in office A. if I install FirePower in office B should i install new FMC to office B or it will be pretty if i add add remote FirePower to my FMC located in office A?
I will add to your Q 
can FTD manage by two FMC ? Yes it can if FMC is run HA

so siteA have FMCA and SiteB have FMCB 
the FTD in each site manage by only one FMC 


siteA have FMCA and SiteB dont have FMCB <<- if you have free FMC add it to SiteB if not there is no problem to control FTD in siteB via FMCA, in end this depend in your budget

MHM 

Review Cisco Networking for a $25 gift card