After you complete the setup wizard, in addition to the default configuraton for the inside interface (Ethernet1/2
through 1/8, which are switch ports on VLAN1)., you will have configuration for an outside (Ethernet1/1)
interface that will be maintained when you switch to management center management.
a) Configure the following options for the outside and management interfaces and click
Next
.
1. Outside Interface Address
—This interface is typically the internet gateway, and might be used as
your manager access interface. You cannot select an alternative outside interface during initial device
setup. The first data interface is the default outside interface.
If you want to use a different interface from outside (or inside) for manager access, you will have to
configure it manually after completing the setup wizard.
Configure IPv4
—The IPv4 address for the outside interface. You can use DHCP or manually enter
a static IP address, subnet mask, and gateway. You can also select
Off
to not configure an IPv4 address.
You cannot configure PPPoE using the setup wizard. PPPoE may be required if the interface is
connected to a DSL modem, cable modem, or other connection to your ISP, and your ISP uses PPPoE
to provide your IP address. You can configure PPPoE after you complete the wizard.
Configure IPv6
—The IPv6 address for the outside interface. You can use DHCP or manually enter
a static IP address, prefix, and gateway. You can also select
Off
to not configure an IPv6 address.
2. Management Interface
You will not see Management Interface settings if you performed intial setup at the CLI. Note that
setting the Management interface IP address is not part of the setup wizard. See Step
to set the Management IP address.
DNS Servers
—The DNS server for the firewall's Management interface. Enter one or more addresses
of DNS servers for name resolution. The default is the OpenDNS public DNS servers. If you edit the
fields and want to return to the default, click
Use OpenDNS
to reload the appropriate IP addresses
into the fields.
Firewall Hostname
—The hostname for the firewall's Management interface.
b) Configure the
Time Setting (NTP)
and click
Next
.
1. Time Zone
—Select the time zone for the system.
2. NTP Time Server
—Select whether to use the default NTP servers or to manually enter the addresses
of your NTP servers. You can add multiple servers to provide backups.
c) Select
Start 90 day evaluation period without registration
.
Do not register the threat defense with the Smart Software Manager; all licensing is performed on the
management center.
d) Click
Finish
.
e) You are prompted to choose
Cloud Management
or
Standalone
. For management center management,
choose
Standalone
, and then
Got It
.
Step 3
(Might be required) Configure a static IP address for the Management interface. Choose
Device
, then click
the
System Settings
>
Management Interface
link.
If you want to configure a static IP address, be sure to also set the default gateway to be a unique gateway
instead of the data interfaces. If you use DHCP, you do not need to configure anything.
Cisco Firepower 1010 Getting Started Guide
16
Threat Defense Deployment with the Management Center
Complete the Threat Defense Initial Configuration Using the Device Manager
Summary of Contents for Firepower 1010
Page 2: ......
Page 168: ...Cisco Firepower 1010 Getting Started Guide 166 Threat Defense Deployment with CDO What s Next ...
Page 189: ... 2022 Cisco Systems Inc All rights reserved ...
Page 190: ......