Cisco Cisco Firepower Management Center 4000 Release Notes

Page of 45
Version 5.3.0.2
Sourcefire 3D System Release Notes
40
Features Introduced in Previous Versions
Simplified Intrusion Policy Variable Management
L
ICENSE
Protection
S
UPPORTED
 D
EVICES
Any
S
UPPORTED
 D
EFENSE
 C
ENTERS
Any
The addition of variable sets streamlines and centralizes variable management in 
the object manager. You create custom variable sets and customize the default 
variable set to suit your network environment. The default variable set functions 
as a master key, containing both Sourcefire-provided default variables and 
user-created custom variables, and can be used to populate custom variable sets. 
Customizing a variable in this set propagates the change to all other variable sets 
containing that variable.
The update from Version 5.2 to Version 5.3 automatically transitions existing 
variables into variable sets. Existing system level variables become custom 
variables within the default variable set. Custom variables configured at the 
intrusion policy level are grouped by intrusion policy into new custom variable 
sets.
Geolocation and Access Control
L
ICENSE
FireSIGHT
S
UPPORTED
 D
EVICES
Series 3, Virtual
S
UPPORTED
 D
EFENSE
 C
ENTERS
Any except DC500
Version 5.3 introduced the ability to filter traffic by source or destination countries 
from within your access control policy. To take advantage of geolocation filtering, 
specify the individual countries or reference a geolocation object in an access 
control policy rule.
Geolocation objects are configured in the object manager and represent one or 
more countries that your system has identified in traffic on your monitored 
network. Create geolocation objects to save and organize custom groupings of 
countries.
URL Filtering License Change
L
ICENSE
Protection + URL Filtering
S
UPPORTED
 D
EVICES
Series 3, Virtual, X-Series
S
UPPORTED
 D
EFENSE
 C
ENTERS
Any except DC500
Sourcefire no longer requires a Control license to enable URL filtering. Only a 
Protection license is required. After you add a URL Filtering license for the first 
time, the Defense Center automatically enables URL filtering and automatic 
updates.
8300 Family of Series 3 FirePOWER Appliances
S
UPPORTED
 D
EVICES
3D8350, 3D8360, 3D8370, 3D8390
Version 5.3 introduced the high-powered 8300 Family of Series 3 FirePOWER 
managed devices. The 8300 Family supports stacking, clustering, all existing 
NetMods, and all other features of the existing Series 3 8000 Series managed