Cisco Security Cloud Control: Secure Firewall Device Management

PDF

Cisco Security Cloud Control: Secure Firewall Device Management

About this content

Learn how to manage FDM-managed devices with Cisco Security Cloud Control, including onboarding, configuration, change monitoring, analytics and logging, integrations, Terraform workflows, troubleshooting, and support.


Introduction

Learn how Security Cloud Control manages FDM-managed devices, including Smart Licensing, GUI and CLI access, API support, device upgrades, migration, interfaces, routing, high availability, security policies, VPN, monitoring, analytics, and change tracking.

Configure basic settings

Learn how to get started with Security Cloud Control Firewall Management, including supported products, licenses, maintenance schedules, Cloud-Delivered Firewall Management Center setup, provisioning, access, and dashboard monitoring.

Manage Firewall administration in Security Cloud Control Firewall Management

Learn how to manage organization-wide firewall settings, user access, notifications, logging visibility, filters, and role permissions in Security Cloud Control Firewall Management.

Deploy and manage Secure Connectors for device onboarding

Learn how Secure Device Connectors connect Security Cloud Control to devices that are not directly reachable from the internet, including deployment options, status checks, upgrades, backups, and troubleshooting.

Onboard devices in Security Cloud Control Firewall Management

Learn how to onboard FDM-managed Firewall Threat Defense devices to Security Cloud Control, including supported onboarding methods, licensing requirements, local management prerequisites, and device addressing guidance.

Manage onboarded device settings

Learn how to manage onboarded devices and services in Security Cloud Control, including IP addresses, names, credentials, labels, notes, external links, backups, reconnect actions, and removal.

Configuring FDM-Managed Devices

Learn how to configure FDM-managed devices in Security Cloud Control, including interfaces, routing, objects, access policies, NAT, templates, high availability, device settings, CLI tools, and REST API macros.

Configure Network Address Translation for FDM-managed

An overview of network address translation for ASA devices, including NAT rule types, translated addresses, interface scope, IPv4 and IPv6 translation, policy impact, and rule management tasks.

Manage objects

Learn how to create, edit, compare, filter, share, override, and clean up reusable network, service, URL, and application objects used across device policies in Security Cloud Control.

Backing Up FDM-Managed Devices

Learn how to back up Firewall Threat Defense devices managed through Security Cloud Control by opening the appropriate Cloud-Delivered Firewall Management Center, on-premises Firewall Management Center, or FDM backup workflow.

Upgrade FDM-Managed Device

Learn how to upgrade FDM-managed images in Security Cloud Control Firewall Management for single devices, multiple devices, high availability pairs, and custom image repositories.

Establish Site-to-Site VPN connection using Security Cloud Control Firewall Management

Learn how to create and monitor site-to-site VPN tunnels between Secure Firewall ASAs, including IPSec and IKE settings, tunnel connectivity, and issue review.

Establish Remote Access VPN connection using Security Cloud Control Firewall Management

Learn how to configure Remote Access VPN for FDM-managed devices in Security Cloud Control, including AnyConnect support, identity sources, group policies, connection profiles, traffic access, licensing, and verification.

Managing Virtual Private Network in Security Cloud Control

Learn how to monitor remote access VPN sessions on ASA devices, including active users, session details, filtering, and disconnect actions.

Manage device configuration

Learn how to manage configuration changes across devices in Security Cloud Control, including reading, previewing, deploying, discarding, synchronizing, resolving conflicts, accepting out-of-band changes, and scheduling polling.

Monitor and report change logs, workflows, and jobs

Learn how to monitor change logs, workflows, jobs, change requests, and executive summary reports for operational visibility in Security Cloud Control.

Secure Event Connectors

Install and configure Secure Event Connectors so firewall events can reach Security Cloud Control logging and analytics services.

Security Analytics and Logging Licenses

Learn how to send syslog and NSEL events to Cisco cloud analytics, configure Secure Event Connector destinations, create macros, verify event flows, and troubleshoot logging data.

Secure Logging Analytics (SaaS) for FDM-Managed Devices

Learn how to send FDM-managed device events to Security Analytics and Logging using a Secure Event Connector or direct cloud connection, and view those events in Security Cloud Control.

Events in Security Cloud Control

Learn how to view and analyze security events in Security Cloud Control, including event types, filtering, event details, and investigation workflows.

View Events in Security Cloud Control Firewall Management

Learn how to view live and historical events in Security Cloud Control to filter event data, inspect details, and investigate firewall activity.

Terraform

Learn how to automate the setup and management of your Security Cloud Control organization using Terraform providers and modules.

Troubleshooting

Learn how to troubleshoot errors in Security Cloud Control including issues with Secure Firewall ASA devices, Secure Device Connectors, Secure Event Connectors, and device connectivity states.

FAQ and support

Learn about Security Cloud Control FAQs and resources for onboarding, device types, troubleshooting, policy optimization, connectivity, data interfaces, personal information, and contacting support.