Cisco Cisco Firepower Management Center 2000 Manuel Technique

Page de 7
In order to install the FirePOWER Services on a Cisco ASA, these components are required:
Cisco ASA software Version 9.2.2 or later
Cisco ASA platforms 5512-X through 5555-X
FirePOWER Software Version 5.3.1 or later
Note: If you want to install FirePOWER (SFR) Services on an ASA 5585-X Hardware
Module, read 
.
These components are required on the Cisco FireSIGHT Management Center:
FirePOWER Software Version 5.3.1 or later
FireSIGHT Management Center FS2000, FS4000 or virtual appliance
The information in this document was created from the devices in a specific lab environment. All of
the devices used in this document started with a cleared (default) configuration. If your network is
live, make sure that you understand the potential impact of any command.
Background Information
The Cisco ASA FirePOWER module, also known as the ASA SFR, provides next-generation
Firewall services, such as:
Next Generation Intrusion Prevention System (NGIPS)
Application Visibility and Control (AVC)
URL filtering
Advanced Malware Protection (AMP)
Note: You can use the ASA SFR module in Single or Multiple context mode, and in Routed
or Transparent mode.
Before You Begin
Consider this important information before you attempt the procedures that are described in this
document:
If you have an active service policy that redirects traffic to an Intrusion Prevention System
(IPS)/Context Aware (CX) module (that you replaced with the ASA SFR), you must remove it
before you configure the ASA SFR service policy.
You must shut down any other software modules that currently run. A device can run a single
software module at a time. You must do this from the ASA CLI. For example, these
commands shut down and uninstall the IPS software module, and then reload the ASA:
ciscoasa# sw-module module ips shutdown
ciscoasa# sw-module module ips uninstall
ciscoasa# reload
The commands that are used in order to remove the CX module are the same, except the
cxsc keyword is used instead of ips:
ciscoasa# sw-module module cxsc shutdown
ciscoasa# sw-module module cxsc uninstall
ciscoasa# reload