cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Who Me Too'd this topic

Change FTD management interface to Outside Data interface

keithcclark71
Level 3
Level 3

The changing of management interface to outside data interface confuses me is since I am staging\registering the FTD localy on the same subnet with the FMC then once I change the management to data outside interface I really would not be able to test it until I actually deployed to the production site as the FMC would be trying to reach the outside interface of the FTD through its configured gateway which in my case would be a production ASA that sits in front of the FMC. Testing before production deployment would not be possible as my only option is to plug the FTD outside interface into switch that the FMC is also plugged into(There is no public IP on the FMC itself).

I am going to attempt to configure fully the FTD over the management interface then change to data interface and deploy to site It alos appears in 7.2 you can set management through the FMC GUI within the ethernet1/1 interface settings (Is this the same thing as doing the configure network management-interface-data command in CLI?) If so is it better to do the change from the CLI or the FMC GUI or does it even matter. My platform settings are enabled to allow any IPV4 to Outside for SSH only temporary until I get this workingthen I will restrict initiator. Anything else anyone can think of before I do all this? I am at point where my config is fully pushed to the FTD and am ready to change to the data interface I am just concerned that once i put in production I wont be able to manage it and then have to bring back and try to figure out again. To be clear I'm not registering the FTD as that is already done over the management interface but I will be changing to data interface for management and deploying to production in the hopes that the FMC will then see it somehow

Who Me Too'd this topic