cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

Firepower ISE and SXP

439
Views
5
Helpful
1
Comments
dm2020
Beginner

Hi All,

 

I'm looking to integrate our FMC (that will manage ~ 100 FTDs) with ISE with subscription to SXP so that we can use SGTs for source/destination policy matching. I am aware that SXP doesn't scale that well with a max of 30 peers in a 2-node ISE deployment. From my understanding, only a single ISE SXP peer is required pointing to FMC and not to the actual FTDs. Is this correct? The SXP binding limitations are not currently a concern.

 

Appreciate the help

1 Comment
Aref Alsouqi
VIP Rising star

That is correct, the integration will happen between ISE pxGrid controller and FMC itself. Regarding the max with pxGrid v2, I think it is between 20 and 30 subscribers, depending on the deployment platform. Take a look at this post on my blog for the pxGrid integration steps between ISE and FMC:

https://bluenetsec.com/fmc-pxgrid-integration-with-ise/

Content for Community-Ad