cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1407
Views
1
Helpful
4
Replies

SSH access to firepower 1010 via loopback

andreas.fuchs
Visitor

Hello guys,
we try to access a firepower 1010 (remote office) from our headquater over an ipsec tunnel via ssh.
Therefore we configured a loopback interface, which is part of the routing over the vpn, and this loopback is pingeable.
Somehow we are not able to get ssh running...
Any ideas what we need to enable to get ssh access to loopback running?
Thanks

4 Replies 4

Marvin Rhoads
Hall of Fame
Hall of Fame

It's not supported (on 7.3). "... loopback interfaces cannot be used for management features like AAA, SSH, Syslog, etc., they can only be used for VTI tunnels."

https://secure.cisco.com/secure-firewall/v7.3/docs/loopback-interface

As @Rob Ingram notes, release 7.4 adds ssh and other support.

(edited to reflect Rob's information)

From 7.4 - "You can now use loopback interfaces for AAA, BGP, DNS, HTTP, ICMP, IPsec flow offload, NetFlow, SNMP, SSH, and syslog" https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/roadmap/management-center-new-features-by-release.html

 

are config config SSH in loop back via FMC ?
MHM

chapulincolorado
Frequent Visitor
Frequent Visitor

chapulincolorado_0-1767804939912.png

In platform settings SSH Access, add a rule for your loopback interface and which networks will be able to ssh into it.  

Review Cisco Networking for a $25 gift card