FTD
- Firepower Threat Defense: NG Firewall
- Firepower Device Manager: On box management interface of FTD
- Firepower Management Center: Management platform for FTD
- FXOS Chassis Manager: The management interface for Cisco Firepower 4100/9300 platform which is part of Cisco ACI. Firepower 4100/9300 provides FXOS CLI, FXOS REST API, Modular chassis-based security system and Firepower Chassis Manager
- Logical device can be FTD, ASA or Radware DefensePro (Decorator) for DDOS mitigation.
FTD High Availability and Scalability
- High Availability: connecting using failover cable directly or via switch
- HA Link (Failover link) is used to sync configuration
- Stateful Failover link is used to sync application content between peers
- Failover command and verification
- Active Box> no failover active
- show failover
- Clustering
FTD Management
- Change password: configure password
- Add User: configure user
- Add FMC as manager: configure manager
- Verification: show user
FMC
FMC System Management
- Change Shell (SSH) admin account:
- passwd
- sudo passwd admin
- Change FMC GUI password: System – User Menu
Reference
- https://www.cisco.com/c/en/us/td/docs/security/firepower/quick_start/reimage/asa-ftd-reimage.html
- Configure FDM (Firepower Device Management) On-Box Management For The Firepower 2100: https://www.cisco.com/c/en/us/support/docs/security/firepower-2100-series/213519-configure-fdm-firepower-device-manageme.html
- FMC REST API quick guide: https://www.cisco.com/c/en/us/td/docs/security/firepower/620/api/REST/Firepower_Management_Center_REST_API_Quick_Start_Guide_620.html
- https://www.youtube.com/watch?v=-e0bNF3q0Kg
- Firepower NGIPSv in ACI: https://www.youtube.com/watch?v=nu574_qahPg
- https://www.youtube.com/watch?v=pIUxFL5Q4U4&list=PLgnrksnL_Rn0U6SUztVHaTL85BEvgNlL-&index=1
- https://www.lammle.com/post/cisco-4100-9300-ftd-password-recovery-and-then-reset-ftd-to-factory-default/
- https://bluenetsec.com/add-ftd-to-fmc/
- Reset the Password of the Admin User on a Cisco Firepower System: https://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/118631-technote-firesight-00.html
- Cisco Firepower Threat Defense Configuration Guide for Firepower Device Manager, Version 6.4.0: https://www.cisco.com/c/en/us/td/docs/security/firepower/640/fdm/fptd-fdm-config-guide-640/fptd-fdm-mgmt.html
- Change or Recover Password for FTD through FXOS Chassis Manager: https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/213474-change-or-recover-password-for-ftd-throu.html
- Cisco Firepower 4100/9300 FXOS Firepower Chassis Manager Configuration Guide, 2.3(1): https://www.cisco.com/c/en/us/td/docs/security/firepower/fxos/fxos231/web-guide/b_GUI_FXOS_ConfigGuide_231/introduction_to_the_firepower_security_appliance.html
- Configure, Verify and Troubleshoot Firepower Device Registration: https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/215540-configure-verify-and-troubleshoot-firep.html