cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
966
Views
0
Helpful
1
Replies

Remote Deployment of 2130

mumbles202
Level 5
Level 5

In the past I had read that the way to accomplish remotely deploying a FTD device managed by a central FMC was to assign a public ip to the management interface of the device that way the box would still be accessible and could be configured prior to deploying if you could replicate the setup in a lab.  I've currently run into a situation where a HA pair of 2130s are replacing a pair of firewalls, but on the WAN a /30 is defined so using a dedicated public per appliance isn't going to be possible.  There isn't a MPLS network in place that would be reachable w/o the appliance being online so unfortunately that's not a viable solution. 

 

Is the only option at this point to setup a NAT on the appliance to accomplish this and, if so, can I put a port in the host definition on the FMC so that I'm able to differentiate between the 2 devices that will have the same public ip address?

1 Reply 1

Sheraz.Salim
VIP Alumni
VIP Alumni

I have done that lab in DCLOUD. this is a tricky as far as i remember that lab and doing some thing similar in real life/production network there is a high chance to make a minor mistake and minor mistake can cost you to travel to site. 

 

 

Is the only option at this point to setup a NAT on the appliance to accomplish this and, if so, can I put a port in the host definition on the FMC so that I'm able to differentiate between the 2 devices that will have the same public ip address?

yes, that possible. let see what other says, with more experience in this.

please do not forget to rate.
Review Cisco Networking for a $25 gift card