cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
370
Views
0
Helpful
5
Replies

SGT groups in FMC

Antonio Macia
Level 3
Level 3

Hi,

Is it possible to create groups of SGTs to facilitate the creation of firewall rules when multiple SGTs need to be added?

Regards

5 Replies 5

marce1000
VIP
VIP

 

     - FYI : https://www.cisco.com/c/en/us/td/docs/security/cdo/managing-ftd-with-cdo/managing-ftd-with-cisco-defense-orchestrator/configuring-ftd-devices.html#Create_an_FTD_SGT_Group

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

Hi @marce1000 

The link is for Defense Orchestrator. I'm using FMC as manager.

balaji.bandi
Hall of Fame
Hall of Fame

SGT is possible - but to be clear to address correctly can you provide more use case example ?

 SGT/ISE Attributes tab can match traffic based on the users Security Group Tag (SGT)

https://www.cisco.com/c/en/us/td/docs/security/firepower/70/configuration/guide/fpmc-config-guide-v70/rule_management_common_characteristics.html?bookSearch=true#id_16963

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Hi @balaji.bandi 

Basically I just want to add a bunch of SGT in one shot having them in a group, instead of picking one by one. 

Never tried adding Group of SGT (technically should work as it matches the Rule) - but check any Limitation on the guide.

FMC (cloud based defence orches) - so most of the things should be same, that give you direction where to look next.

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Review Cisco Networking for a $25 gift card