View Cart
0 Items | Total: US$0.00
Welcome,      Register

You are here

SEC0237 - FTD 6.1 Firewall Mode and Interface Type (Part 3)

Rating: 
5
Average: 5 (1 vote)
Difficulty Level: 
0
Lab Document: 
<Please login to see the content>
The video walks you through different operational mode on Cisco FTD 6.1 as physical and virtual (NGFWv) devices covering, routed, passive, inline, transparent and ERSPAN modes. We will focus on interface configuration of each type, zone configuration, and how to get traffic to pass through or to the device. 
 
Part 3 of this video covers FTD in transparent and ERSPAN modes
 
Topic:
  • FTD Routed Mode
    • Routed Zone
    • Routed Interface
    • Redundant Interface
    • Static Route
  • FTD Passive Mode
    • Passive Zone
    • Passive Interface
    • SPAN Session
  • FTD Inline Mode
    • Inline Zone
    • Inline Set
  • FTD Transparent Mode
    • Etherchannel
    • Sub-Interface
    • Bridge Group Interface
  • FTD with ERSPAN

About Author

Metha Chiewanichakorn, CCIE#23585 (Ent. Infra, Sec, SP), is a Cisco networking enthusiast with years of experience in the industry. He is currently working as a consulting engineer for a Cisco partner. As a founder of and an instructor at labminutes.com, Metha enjoys learning and challenges himself with new technologies.

4 comments

Hello Metha,
May you please give more description about differences between using FTD in inline design and transparent. As far as I see they both pass traffic in L2 with NG features.

Transparent mode in FTD came from the ASA which is basically L2 FW and can perform common FW functionalities. Inline FTD is more of a NGIPS and can only perform Firepower functionalities.

Hi Metha,

In my case, I am deploying the FTD with Transparent mode and I have created a Bridge group interface with two select interface members(i.e Inside and Outside). After that I would like to also create inline set with these two interfaces but I could not select them as the interface pair. What is wrong?

Inline set is only for creating interface pair in Routed mode FW for IPS only. For transparent FW, you only need to add interfaces into Bridge group, no inline set is needed.