Learn how to onboard a Firewall Threat Defense device to Cloud-Delivered Firewall Management Center using a CLI registration key, including prerequisites, management mode, policy assignment, licensing, registration commands, labels, and post-onboarding actions.
Use the procedure below to onboard a device for Cloud-Delivered Firewall Management Center with a CLI registration key.
If your device is currently managed by an on-premises Firewall Management Center, onboarding the device will fail. You can either delete the device from the on-premises Firewall Management Center and onboard as a fresh, new device with no policies or objects, or you can migrate the device and retain the existing policies and objects. See Migrate FTD to Cloud-Delivered Firewall Managmenet Center for more information.
You can create a Security Cloud Control-managed, standalone logical Firewall Threat Defense device using the Secure Firewall chassis manager or the FXOS CLI.
Before you begin
Before you onboard a device, be sure to complete the following tasks:
-
Cloud-Delivered Firewall Management Center is enabled for your tenant.
-
Confirm the device's CLI configuration is successfully completed. See Complete the initial configuration of a Secure Firewall Threat Defense device using the CLI for more information.
-
Review the prerequesites and limitations before you onboard the device. See "Prerequisites to Onboard a Device to Cloud-Delivered Firewall Management Center" in Managing Firewall Threat Defense with Cloud-Delivered Firewall Management Center in Security Cloud Control for more information.
-
The device can be configured for either local management with Secure Firewall Device Manager or remote management with Secure Firewall Management Center.
-
Device must be running version 7.2.0 and later.
-
You have reset the device's SSH password as part of the bootstrap process. If you have you not reset the SSH password, Security Cloud Control recommends using the Onboard a Firewall Threat Defense Device to Cloud-Delivered Firewall Management Center using Zero-Touch Provisioning method.
) icon.