Hi Marvin,
may I ask another question regarding FTDv?
Do you have some experience or best practices using it in a production environment?
From my perspective, due to the performance limitations and license costs it isn't really an option at the mom...
Hi Marvin,
what are your best practices for deploying branch FTDs with a centralized management if a public IP is used for the FTD mgmt Port?
Just restricting e.g SSH etc... in Devices > Platform Settings?
Thanks,
Anton
Be aware that you have to add aaa authorization even if you use attribute "remote-access" - otherwise ssh and ASDM logins are still working.
deny SSH
aaa authorization exec LOCAL
deny ASDM (new since ASA 9.4)
aaa authorization http console LOCAL