The only thing that I can find about FirePower licenses seems to imply that we have the Protection and Control licenses but not the URL Filtering or Malware. We also do not have FMC at this time and will be leveraging ASDM for configuration. Thank you for your assistance.
... View more
Hello, We upgraded our 5505 to a 5506 with FirePower to take advantage of the increased bandwidth and the FirePower Services for security. Previously we had extensive object groups for access and denial and we wanted to transition to the FirePower for security as much as possible. Out of the box our FirePower was broken and it took a couple of month to get Cisco to help us get that functional. But the stopped short of helping us understand how to configure it. They added one simple rule to allow everything and that was it. I am now looking for help, direction, advice on how to configure the firepower for security. We would like to eliminate some of our groups that were mainly created to deny access to other countries, something firepower is said to do automagically via geo-fencing. I don't want to go down a rabbit hole with this one post, I would like to start with geo-fencing to allow north america only. Then we will strip out some of our groups and work from there. Our old method was to subnets based on information off the internet. Then troubleshoot when someone couldn't send us email. It was messy and not a very clean way to secure a site. Thanks in advance for any assistance.
... View more