06-10-2022 03:51 AM
We have 2 Firepower 4120's in HA. up and running.
IT want to put another 4120 at our DR site and replicate the configuration so in an DR event we will bring up the DR firewall manually.
My issue is with the site to site VPN's we have setup, it would mean I would have to duplicated the VPN's with DR FW interfaces, in FMC.
In FMC there is the GET and PUSH option, but the issue is the DR firewall does not have the same amount of interfaces.
What is the easiest way to get the config from the FTD and import it to the DR FW. I understand there will need to be some changes to the config.
Have looked at REST on the FTD but exporting the config just does not work. ( errors with authentication) and all the info is so vague.
06-10-2022 05:52 AM
If the config is not same, then you need manually edit the config and make necessary change and restore in DR.
06-10-2022 06:28 AM
Hi balaji
Thanks for the reply but I cannot get the config from the FTD, using REST does not work.
06-10-2022 06:29 AM
06-13-2022 01:19 AM
Mohammed.
THanks for the reply, do you know if export / import will allow you to change the config to the new hardware. so I can get the ftd up and running.
We are looking at moving to 7.* just need to get a few ikev1 site to site vpn's changed.
06-13-2022 01:25 AM
06-13-2022 01:26 AM
Ok thanks for the headsup.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide