06-24-2018 03:07 PM - edited 03-12-2019 05:24 AM
I am trying to set up a simple site to site VPN from an NGFW Firepower 2110 device to an AWS Virtual Private Gateway. AWS emits a config file, though they don't seem to offer anything specific for the NGFW line. The AWS script starts with this code and in a complete fail on my part, I can't even get the first line accepted. It appears my device only accepts ca as a valid argument after crypto. The GUI does allow site to site VPN setup but some of the options like aes128 don't appear explicitly. Am I missing something or does the NGFW not accept this style of CLI configuration. Any help appeciated and apologies if these are naiive question,
Darren
crypto isakmp policy 200 encryption aes 128 authentication pre-share group 2 lifetime 28800 hash sha exit
Solved! Go to Solution.
06-25-2018 06:09 PM
I am assuming that you are running the Firepower Threat Defense on the Firepoewer 2100 series chassis. You cannot use the CLI to configure the FTD, so this would have to be done through the GUI. I would get the script from AWS and manually use that to create a new Site to Site configuration with the required parameters.
06-25-2018 06:09 PM
I am assuming that you are running the Firepower Threat Defense on the Firepoewer 2100 series chassis. You cannot use the CLI to configure the FTD, so this would have to be done through the GUI. I would get the script from AWS and manually use that to create a new Site to Site configuration with the required parameters.
03-20-2019 02:26 AM
Hi Mr. Rahul Govindan
Good Day, I saw this faq`s, and i think it will help me regarding my issues on connecting my Cisco Firepower Threat Defense 2130 model to AWS site-to-site VPN connection, may I ask if you already resolved this issue. If yes, may I request to provide what are the processes, steps and configuration you do in Cisco Firepower Threat Defense 2130 to established the VPN connection and resolved the issue.
Thank you very much, hope you consider this. It will give a lot of help.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide