Quick start basic setup
Quick start basic setup is a configuration approach that enables rapid deployment of Secure Firewall feature sets and managed devices to begin controlling and analyzing network traffic with minimal initial configuration effort.
Setup capabilities
The Secure Firewall feature set provides powerful and flexible capabilities that support both basic and advanced configurations for Secure Firewall Management Center and its managed devices.
Installing and performing initial setup on physical appliances
Procedure
|
Install and perform initial setup on all physical appliances using the documentation for your appliance:
|
Deploy virtual appliances
This task enables you to deploy virtual appliances for Cisco Secure Firewall by identifying supported platforms and using the correct deployment guides for Management Centers and devices.
Deploy virtual appliances when your network architecture requires virtualized Cisco Secure Firewall Management Centers or devices, such as in cloud or virtualized environments.
Use the documentation roadmap to locate the relevant deployment guides: Navigating the Cisco Secure Firewall Threat Defense Documentation. Follow these steps if your deployment includes virtual appliances.
Before you begin
Review your deployment requirements. Ensure you have access to the compatibility guide and the appropriate deployment documentation for your environment. Determine whether you are deploying Management Centers, devices, or both as virtual appliances. Follow these steps to deploy virtual appliances:
Procedure
|
Step 1 |
Determine the supported virtual platforms you will use for the Management Center and devices (these may not be the same). Refer to the Cisco Secure Firewall Compatibility Guide. |
|
Step 2 |
Deploy virtual Secure Firewall Management Centers using the documentation for your environment:
|
|
Step 3 |
Deploy virtual devices using the documentation for your appliance:
|
After you complete these steps, your virtual appliances are deployed. Configure and integrate them into your network environment.
What to do next
-
Refer to the configuration guides for further setup and integration of your deployed virtual appliances.
-
Verify connectivity and functionality of the Management Centers and devices.
First-time login
A first-time login is a system access event that
-
requires preparation of the appliance as described in Installing and performing initial setup on physical appliances or Deploy virtual appliances.
-
uses the admin account for CLI access or web interface access and refers to the instructions in the Cisco Secure Firewall Management Center Getting Started Guide for the specific model, and
-
completes initial configuration, setting system aspects such as passwords, network settings, and enabling telemetry features.
Initial configuration settings
These aspects of your system are configured during the first login:
-
During initial configuration, the system sets the passwords for the two admin accounts (web interface and CLI) to the same value. This process enforces strong password requirements as described in Guidelines and limitations for user accounts for Firewall Management Center. The system synchronizes the passwords only during initial configuration. If you later change the password for either account, the passwords will no longer match, and the web interface admin account will no longer require a strong password. (Refer to Add or edit an internal user.)
-
During the first login, you must configure network settings for the Firewall Management Center. These settings determine how the system communicates through its management interface (eth0). By default, values are supplied, but you can set custom values as needed:
-
Fully qualified domain name (
<hostname>.<domain>) -
Boot protocol for IPv4 configuration (DHCP or Static Manual)
-
IPv4 address
-
Subnet mask
-
Gateway
-
DNS servers
-
NTP servers
You can view and change these settings through the Firewall Management Center web interface. For more information, refer to Modify Firewall Management Center Management Interfaces and Time Synchronization.
-
-
As part of the initial configuration, the system schedules weekly GeoDB updates. We recommend you review this task and make changes if necessary, as described in Schedule GeoDB updates.
-
As part of the initial configuration, the system schedules weekly downloads. We recommend you review this task and make changes if necessary, as described in Schedule software upgrade downloads.
Important
This task only downloads the updates. It is your responsibility to install any updates this task downloads.
-
As part of the initial configuration, the system schedules weekly configuration-only Firewall Management Center backups (locally stored). We recommend you review this task and make changes if necessary, as described in Schedule Firewall Management Center backups.
-
As part of the initial configuration, the system downloads and installs the latest VDB. To keep the system up to date, we recommend you schedule recurring updates as described in Schedule vulnerability database (VDB) updates.
-
As part of the initial configuration, the system schedules daily intrusion rule updates. We recommend you review this task and make changes if necessary, as described in Schedule intrusion rule updates.
After you complete the Firewall Management Center initial configuration, the web interface displays the device management page described in Cisco Secure Firewall Management Center Device Configuration Guide.
(This is the default login page only for the first time the admin user logs in. On subsequent logins by the admin or any user, the default login page is determined as described in Specify your home page.)
After you complete the initial configuration, you can begin controlling and analyzing traffic by configuring basic policies. For details, refer to Configure basic policies and settings.
Configure basic policies and settings
This task guides you to configure and deploy basic policies and system settings, so you can begin to monitor and manage your deployment effectively.
-
Establishes initial access and configuration for your system.
-
Ensures that essential policies are in place for data visibility and system operation.
You must configure and deploy basic policies to view data in the dashboard, Context Explorer, and event tables.
This guide does not provide a comprehensive discussion of policy or feature capabilities. For information about additional features and advanced configurations, refer to other sections in this guide.
Before you begin
Log in to the web interface using the admin account for web interface or CLI. Perform the initial configuration as described in the Cisco Secure Firewall Management Center Getting Started Guide, which is available for your hardware model from the Install and Upgrade Guides.
Follow these steps to configure basic policies and settings:
Procedure
|
Step 1 |
Set a time zone for this account as described in Set your default time zone. |
|
Step 2 |
If needed, add licenses as described in Licenses. |
|
Step 3 |
Add managed devices to your deployment. For detailed instructions, refer to Add a Device to the Firewall Management Center in the Cisco Secure Firewall Management Center Device Configuration Guide. |
|
Step 4 |
Configure your managed devices as described in:
|
|
Step 5 |
Configure an access control policy as described in Creating a Basic Access Control Policy in the Cisco Secure Firewall Management Center Device Configuration Guide.
|
|
Step 6 |
Apply the system-provided default health policy as described in Apply a health policy. |
|
Step 7 |
Customize a few of your system configuration settings:
|
|
Step 8 |
Customize your network discovery policy as described in Configuring the Network Discovery Policy in the Cisco Secure Firewall Management Center Device Configuration Guide. By default, the network discovery policy analyzes all network traffic. Limit discovery to RFC 1918 addresses in most cases. |
|
Step 9 |
Consider customizing these other common settings:
Deploy configuration changes; see the Cisco Secure Firewall Management Center Device Configuration Guide. |
After you complete these steps, your system allows you to view data in dashboards and event tables and proceed with more feature customization if needed.
What to do next
Review and consider configuring other features described in Features and the rest of this guide.
)
)

Feedback