cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
313
Views
0
Helpful
1
Replies

ASA 5516 with Firepower

rohan.das
Level 1
Level 1

Can anyone help me with asa 5516 with fire power services.

I am able to see firepower in asdm but am not much sure how to proceed next with complete deployment.

Can anyone guide me with step by step procedure to deploy.

I am giving you a little brief on my infra.

core switch with multiple vlan wants to access internet via asa firepower filtering.

I am able to ping outside interface from my inside network but unable to reach to internet and am unable to find what i am missing out.

show xlate also gives response like this

ICMP PAT from inside:10.2.2.2/22 to outside:192.168.1.2/2 flags ri
but still unable to reach internet

Even i dont know whether traffic is going to firepower or not.
1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

Start off with the basics as described in the Quick Start Guide:

http://www.cisco.com/c/en/us/td/docs/security/asa/quick_start/sfr/firepower-qsg.html

If you want a good description of configuring policies on your FirePOWER module, I recommend this Cisco Live presentation:

BRKSEC-2018 Migrating ASA IPS and CX to FirePOWER

https://www.ciscolive.com/online/connect/sessionDetail.ww?SESSION_ID=83675&backBtn=true

(Don't be fooled by the title - it has good general advice that has nothing to do with the old CX module.)

Review Cisco Networking for a $25 gift card