
Step 5
The first time you log in to the threat defense, you are prompted to accept the End User License Agreement
(EULA) and, if using an SSH connection, to change the admin password. You are then presented with the
CLI setup script for the Management interface settings.
The Management interface settings are used even though you are enabling manager access on a data interface.
You cannot repeat the CLI setup wizard unless you clear the configuration; for example, by reimaging.
However, all of these settings can be changed later at the CLI using
configure network
commands.
See
Command Reference for Secure Firewall Threat Defense
.
Note
Defaults or previously entered values appear in brackets. To accept previously entered values, press
Enter
.
See the following guidelines:
•
Configure IPv4 via DHCP or manually?
—Choose
manual
. Although you do not plan to use the
Management interface, you must set an IP address, for example, a private address. You cannot configure
a data interface for management if the management interface is set to DHCP, because the default route,
which must be
data-interfaces
(see the next bullet), might be overwritten with one received from the
DHCP server.
•
Enter the IPv4 default gateway for the management interface
—Set the gateway to be
data-interfaces
.
This setting forwards management traffic over the backplane so it can be routed through the manager
access data interface.
•
If your networking information has changed, you will need to reconnect
—If you are connected with
SSH, you will be disconnected. You can reconnect with the new IP address and password if your
management computer is on the management network. You will not be able to reconnect yet from a
remote network due to the default route change (through the data interfaces). Console connections are
not affected.
•
Manage the device locally?
—Enter
no
to use the management center. A
yes
answer means you will
use the device manager instead.
•
Configure firewall mode?
—Enter
routed
. Outside manager access is only supported in routed firewall
mode.
Example:
You must accept the EULA to continue.
Press <ENTER> to display the EULA:
End User License Agreement
[...]
Please enter 'YES' or press <ENTER> to AGREE to the EULA:
System initialization in progress.
Please stand by.
You must change the password for 'admin' to continue.
Enter new password:
********
Confirm new password:
********
You must configure the network to continue.
You must configure at least one of IPv4 or IPv6.
Do you want to configure IPv4? (y/n) [y]:
Do you want to configure IPv6? (y/n) [n]:
Configure IPv4 via DHCP or manually? (dhcp/manual) [manual]:
Enter an IPv4 address for the management interface [192.168.45.45]:
10.10.10.15
Enter an IPv4 netmask for the management interface [255.255.255.0]:
255.255.255.192
Enter the IPv4 default gateway for the management interface [data-interfaces]:
Enter a fully qualified hostname for this system [firepower]:
ftd-1.cisco.com
Enter a comma-separated list of DNS servers or 'none' [208.67.222.222,208.67.220.220]:
Cisco Firepower 1010 Getting Started Guide
59
Threat Defense Deployment with a Remote Management Center
Pre-Configuration Using the CLI
Содержание Firepower 1010
Страница 2: ......
Страница 48: ...Cisco Firepower 1010 Getting Started Guide 46 Threat Defense Deployment with the Management Center What s Next ...
Страница 118: ...Cisco Firepower 1010 Getting Started Guide 116 Threat Defense Deployment with the Device Manager What s Next ...
Страница 168: ...Cisco Firepower 1010 Getting Started Guide 166 Threat Defense Deployment with CDO What s Next ...
Страница 189: ... 2022 Cisco Systems Inc All rights reserved ...
Страница 190: ......