FirePower management interface
While installing Cisco FirePOWER on 5545-X, I was following the "Install and Configure a FirePOWER Services Module on an ASA Platform" guide.One of the steps was to configure an IP address to the FirePower management interface. However, nowhere in the document it was mentioned how would that interface connect to the outside world.
So I tired to google it, and it looks like no one was asking that question: How would an internal module connect to the outside world? Not a single blog post about it. It just worked for everyone, no questions asked!
After digging around I found this document: "Cisco ASA FirePOWER Module Quick Start Guide"
And there I have found my answers:
- For 5585-X, FirePOWER is installed on a dedicated slot with its own mgmt0 interface.
- For 5545-X, FirePOWER module (SRF) is using the 5545-X's management0/0 interface. Which means that we can not use that interface for managment and it must be dedicated to FirePOWER!
- For the rest, it will use the "inside" interface.
The diagram shows two devices in the same VLAN (we will assume /24 for the configuration). The device on the top is in VLAN 100. The FirePOWER managed device bridges VLAN 100 to VLAN 101 and allows the two devices to communicate directly with one another. The connection to the FirePOWER device is a single 802.1q trunk.
Optical giant split raises acquisition talk.
Giddy up, y'all -- It's roundup time!
Free booklet from Ixia describes detailed methodologies to verify SDN & OpenFlow functionality and performance so your network performs at the highest level.