Initial Device Setup
Firepower 8000 Series Getting Started Guide
13
Change Password
You must change the password for the
admin
account. This account has Administrator privileges and cannot
be deleted.
This password allows the
admin
user to log into the device’s web interface and its CLI; the
admin
user has
Configuration CLI access. Changing any user’s password for the web interface also changes the password for
the CLI, and vice versa.
Network Settings
A device’s network settings allow it to communicate on your management network. If you already configured
the device’s network settings, this section of the page may be prepopulated.
The Firepower System provides a dual stack implementation for both IPv4 and IPv6 management
environments. You must specify the management network protocol (
IPv4
,
IPv6
, or
Both
). Depending on your
choice, the setup page displays various fields where you must set the IPv4 or IPv6 management IP address,
netmask or prefix length, and default gateway:
—
For IPv4, you must set the address and netmask in dotted decimal form (for example: a netmask of
255.255.0.0).
—
For IPv6 networks, you can select the
Assign the IPv6 address using router autoconfiguration
check box to
automatically assign IPv6 network settings. Otherwise, you must set the address in colon-separated
hexadecimal form and the number of bits in the prefix (for example: a prefix length of 112).
You can also specify up to three DNS servers, as well as the host name and domain for the device.
Firepower Device LCD Panel Configuration
Select whether you want to allow changing of a Firepower device’s network settings using the LCD panel.
Note:
Enabling this option can represent a security risk. You need only physical access, not authentication, to
configure network settings using the LCD panel. For more information, see “Using the LCD Panel on a
Firepower Device” in the
Firepower 8000 Series Hardware Installation Guide
.
Remote Management
You must manage a Cisco device with a Firepower Management Center. In this two-step process, you first
configure remote management on the device, then add the device to a Firepower Management Center. For
your convenience, the setup page allows you to preregister the device to the Firepower Management Center
that will manage it.
Leave the
Register This Device Now
check box enabled, then specify the IP address or fully qualified domain name
of the managing Firepower Management Center as the
Management Host
. Also, type the alphanumeric
Registration Key
you will later use to register the device to the Firepower Management Center. Note that this is
a simple key that you specify, up to 37 characters in length, and is not the same as the license key.
If the device and Firepower Management Center are separated by a network address translation (NAT) device,
defer device registration until after you complete the initial setup. See the Managing Devices chapter in the
Firepower Management Center Configuration Guide
for more information.
Time Settings
You can set the time for a device either manually or via network time protocol (NTP) from an NTP server,
including the Firepower Management Center. Cisco recommends that you use the Firepower Management
Center as the NTP server for its managed devices.
You can also specify the time zone used on the local web interface for the
admin
account. Click the current
time zone to change it using a pop-up window.