Cisco Secure Firewall 4200 Manual page 2

Multi-instance mode for the secure firewall
Table of Contents

Advertisement

Chassis Management Interface
• Interface configuration and assignment.
• Deployment and monitoring of instances.
For a multi-instance device, you add the chassis to the management center and configure chassis-level settings
on the Chassis Manager page.
Chassis Management Interface
Chassis Management
The chassis uses the dedicated Management interface on the device. Multi-instance mode does not support
using a data interface for chassis management or DHCP addressing for the Management interface.
You can only configure the chassis Management interface at the threat defense CLI (at initial setup) or FXOS
CLI (after you convert to multi-instance mode). See
on page 61
Note
Instance Management
All instances share the chassis management interface, and each instance has its own IP address on the
Management network. After you add the instance and specify the IP address, you can make changes to the
network settings at the threat defense CLI.
The instance Management IP address allows SSH by default.
Instance Eventing Interface
The Secure Firewall 4200 includes a second dedicated interface, Management 1/2, that you can use for events.
You can configure this interface at the threat defense CLI in each instance. Assign an IP address on the same
network for each instance. See
Instance Interfaces
To provide flexible physical interface use for instances, you can create VLAN subinterfaces on the chassis
and also share interfaces (VLAN or physical) between multiple instances. See
on page 5
Note
Multi-Instance Mode for the Secure Firewall 3100/4200
2
to change Management interface settings in multi-instance mode.
By default, SSH is not allowed to this interface in multi-instance mode unless you enable the SSH server and
an SSH access list. This difference means that you can connect to the application-mode threat defense
Management interface using SSH, but after you convert to multi-instance mode, you can no longer connect
using SSH by default. See
Configure SSH and SSH Access List, on page
Configure an Event
and
Configure a Subinterface, on page
This chapter discusses chassis VLAN subinterfaces only. You can separately create subinterfaces within the
threat defense instance. See
Change Chassis Management Settings at the FXOS CLI,
Interface.
29.
Chassis Interfaces vs. Instance Interfaces, on page 3
Multi-Instance Mode for the Secure Firewall 3100/4200
43.
Shared Interface Scalability,
for more information.

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the Secure Firewall 4200 and is the answer not in the manual?

Subscribe to Our Youtube Channel

Table of Contents