Cisco Cisco Firepower Management Center 2000 기술 매뉴얼

다운로드
페이지 4
Contents
Introduction
Prerequisites
Components Used
Architecture
Requirements
Topology Overview
Low-Level Design
Solution
Cabling
IP Address
VPN and NAT
Configuration Example
Related Cisco Support Community Discussions
Introduction
Service providers offer managed WAN service in their portfolio. Cisco ASA Firepower platform
provides unified threat management feature set to provide differentiated services. An ASA
Firepower device has seperate interfaces for management connect to a LAN device, however,
connecting a management interface with a LAN device creates a dependency on a LAN device.
This document provides a solution that allows you to manage a Cisco ASA Firepower (SFR)
module without connecting to a LAN device or using a second interface from the service provider
edge device.
Prerequisites
Components Used
ASA 5500-X series platform with Firepower (SFR) services.
Management interface which is shared between the ASA and Firepower module.
Architecture
Requirements
Single dedicated internet access handoff from Service Provider edge device to ASA
Firepower.
Access to the management interface is necessary in order to change the interface state to up.
The management interface of the ASA should stay up in order to manage the Firepower
module.
Management connectivity should not be lost if customer disconnects LAN device.