Integrate Firewall Management Center with Cisco Security Cloud
An integration of Firewall Management Center with Cisco Security Cloud is a security management solution that
-
connects firewall deployments to Cisco's integrated security cloud services for a consistent experience,
-
unifies visibility, enables automation, and strengthens security across network, endpoints, and applications, and
-
offers a platform approach with simpler, more integrated cloud services that reduce the complexity of managing multiple products.
Integration features
The integration provides these capabilities:
-
A centralized view of inventory across Firewall Management Centers.
-
Zero-Touch Provisioning for Firewall Threat Defense.
-
Cross-launching to the Firewall Management Center to manage devices and objects.
-
Help with establishing consistent policies across Firewall Management Centers.
-
Cloud event storage and services to enrich threat hunts and investigations.
Use your Security Cloud Control account to authorize and register (onboard) your Firewall Management Center; Onboard an On-Prem Management Center.
To integrate the Secure Firewall Management Center with Cisco XDR, refer to the Cisco Secure Firewall Management Center and Cisco XDR Integration Guide.
Enable Cisco Security Cloud integration
Enable SecureX integration to connect your management center and managed devices to a Cisco Defense Orchestrator (CDO) tenant, allowing for centralized cloud-based management and enhanced security capabilities.
-
Centralizes device management and event forwarding through the cloud.
-
Provides access to Cisco Security Cloud features such as AI Assistant, Policy Analyzer, XDR Automation, and Zero-Touch Provisioning.
Use this task when you need to onboard your management center and its managed devices to a CDO tenant for integration with Cisco Security Cloud services.
This integration is relevant for organizations seeking to leverage Cisco cloud-based security features, streamline device management, and enable advanced automation and analytics. Perform this task during initial setup or when adding new devices to your Cisco Security Cloud environment.
Before you begin
-
Security Cloud Control uses Cisco Security Cloud Sign On as its identity provider and Duo for multifactor authentication. Ensure that you have your Cisco Security Cloud Sign On credentials and can sign in to the Cisco regional cloud where your account was created.
-
You need a Security Cloud Control tenant to integrate the Secure Firewall Management Center with Cisco Security Cloud. If you do not already have aSecurity Cloud Control tenant, request one or create a tenant during this workflow. For more information, refer to Request a Security Cloud Control Tenant.
-
Link your Security Cloud Control tenant, the one you want to use for onboarding the management center, to your Security Services Exchange (SSE) account. For more information, refer to Link Your Security Cloud Control and Cisco XDR Tenant Accounts.
Follow these steps to enable SecureX integration:
Procedure
|
Step 1 |
In the Secure Firewall Management Center, choose . |
|
Step 2 |
Choose a Cisco regional cloud from the Current Region drop-down list. This cloud is also used for Cisco Success Network, Cisco Support Diagnostics, and the Secure Network Analytics cloud using Security Analytics and Logging (SaaS). If you are registered to the Smart Software Manager, your region is preselected. |
|
Step 3 |
Click Enable Cisco Security Cloud. A separate browser tab opens to log you in to your Security Cloud Control account. Make sure this page is not blocked by a pop-up blocker. |
|
Step 4 |
Click Continue to Cisco SSO.
|
|
Step 5 |
Log in to your Security Cloud Control account.
If you do not have a Security Cloud Sign On account to log in to Security Cloud Control and you want to create one, click Sign up now in the Security Cloud Sign On page. Refer to Create a New Cisco Security Cloud Sign On Account. |
|
Step 6 |
Choose a Security Cloud Control tenant that you want to use for this integration. The Secure Firewall Management Center and the managed devices get onboarded to the Security Cloud Control tenant that you choose here.
If you do not already have a Security Cloud Control tenant or if you want to use a new tenant for this integration, create a new tenant. Refer to Request a Security Cloud Control Tenant for more information. |
|
Step 7 |
Verify that the code displayed in the Security Cloud Control login page matches the code provided by the Secure Firewall Management Center.
|
|
Step 8 |
Click Authorize FMC. |
|
Step 9 |
In the Secure Firewall Management Center, configure these settings:
|
After you complete this task, your management center and its managed devices are onboarded to the CDO tenant and integrated with Cisco Security Cloud. You can now manage devices, forward events, and use advanced Cisco security features from the cloud.
View cloud onboarding status of the Firewall Management Center
Enable Cisco Security Cloud integration to onboard the Firewall Management Center to the selected Security Cloud Control tenant. To view the status of the onboarding task, refer to the Cloud Onboarding Status in the Cisco Security Cloud Integration page.
This table describes the possible cloud onboarding statuses.
|
Status |
Description |
|---|---|
|
Online |
The Firewall Management Center is onboarded to Security Cloud Control. |
|
Onboarding |
The cloud onboarding task is in progress. This could take up to 10 minutes to complete. |
|
Error on Security Cloud Control |
An error has occurred on Security Cloud Control while onboarding the Firewall Management Center to the cloud. Try enabling Cisco Security Cloud integration after some time. |
|
Not Available |
Either the Firewall Management Center is removed from Security Cloud Control or the cloud onboarding task has not started and Security Cloud Control has not discovered the Firewall Management Center yet. Try enabling Cisco Security Cloud again. |
|
Unreachable - Onboarded, but currently unable to communicate with management center |
The Firewall Management Center was successfully onboarded to Security Cloud Control, but Security Cloud Control cannot communicate with the Firewall Management Center. From Security Cloud Control, try reconnecting to the Firewall Management Center. For more information, refer to Managing On-Prem Firewall Management Center with Security Cloud Control. |
|
Failed to get status |
The Firewall Management Center failed to retrieve status from the Security Cloud Control due to a cloud connectivity error. Refresh the Cisco Security Cloud Integration page after sometime to check the status. If the issue persists, try enabling Cisco Security Cloud again. |
Note |
After enabling Cisco Security Cloud integration, it could take up to 90 seconds to complete the registration of Firewall Management Center with the Cisco Security Cloud. If the Cloud Onboarding Status does not appear after you enable Cisco Security Cloud integration, refresh the Cisco Security Cloud Integration page. |
Use Cisco AI Assistant for Security to manage devices effectively
The Cisco AI Assistant for Security in the Firewall Management Center uses generative artificial intelligence and natural language processing technologies. You can use it to:
-
Get help with tasks on the Firewall Management Center.
-
Ensure configurations meet security requirements and best practices.
-
Get descriptions of policies and identify policy components and attributes.
The AI Assistant is limited to admin users and may not be available in all regions.
Enable Cisco AI Assistant for Security
Enable the Cisco AI Assistant for Security to provide AI-driven support and automation within your Secure Firewall Management Center.
This task is relevant when you want to activate AI-powered features in your Secure Firewall Management Center for enhanced security management.
Before you begin
-
Ensure that you have administrator privileges in the Firewall Management Center.
-
Ensure that you have enabled Cisco Security Cloud () in the Firewall Management Center.
Follow these steps to enable the Cisco AI Assistant for Security.
Procedure
|
Step 1 |
Click . |
|
Step 2 |
Under the Cisco AI Assistant for Security section, check the Enable Cisco AI Assistant for Security check box. After you enable the AI assistant, the assistant icon (
|
The Cisco AI Assistant for Security is enabled and accessible from the Secure Firewall Management Center menu bar, providing AI-driven security features.
Get help with Cisco AI Assistant for Security
Configure the Cisco AI Assistant for Security to provide real-time help and guidance for security-related tasks in the Secure Firewall Management Center.
This task is relevant when administrators need assistance or answers regarding security configurations or troubleshooting within the Secure Firewall Management Center.
Use the Cisco AI Assistant to access suggestions or ask custom questions directly from the management interface. Use this feature when you need guidance or support for security operations.
Before you begin
-
Ensure that you have administrator privileges in the Firewall Management Center.
-
Ensure that you have enabled Cisco AI Assistant for Security (, checked Enable Cisco AI Assistant for Security) in the Firewall Management Center.
Follow these steps to get help with Cisco AI Assistant for Security.
Procedure
|
Step 1 |
From the Firewall Management
Center menu bar, click the Cisco AI Assistant for Security (
If you are opening the AI assistant for the first time, a carousel window appears. |
|
Step 2 |
If this is your first time, review the content on the carousel window, and then click Launch AI Assistant. |
|
Step 3 |
In the AI assistant window, select one of the available suggestions or enter your own question in the text field, and click
Send Message ( For more information, refer to the AI Assistant User Guide. |
When you complete these steps, the Cisco AI Assistant for Security becomes available in the Secure Firewall Management Center. You can then receive suggestions or answers to your security questions directly within the interface.
Configure Firewall Management Center to share usage metrics and statistics with Cisco
Configure Cisco Success Network to allow your Firewall Management Center to establish a secure connection to Cisco cloud and stream usage information and statistics. Cisco can then inform you about available features that you have not used, provide additional support services, and improve its products.
Cisco Success Network is a cloud service that enables the Firewall Management Center to establish a secure connection to Cisco cloud and stream usage information and statistics. Streaming telemetry enables you to select data of interest from the Firewall Threat Defense device. The device sends this data in a structured format to remote management stations. This transfer supports several purposes:
-
To inform you of available, but unused features that can improve the effectiveness of the product in your network.
-
To inform you of additional technical support services and monitoring that are available for your product.
-
To help Cisco improve its products.
To know more about the telemetry data that Cisco collects, refer to Cisco Success Network Telemetry Data Collected from Cisco Secure Firewall Management Center Devices.
Note |
|
Before you begin
Enable Cisco security cloud integration or register your Firewall Management Center with the Smart License to perform this task.
Follow these steps to configure your Firewall Management Center to share usage metrics and statistics with Cisco.
Procedure
|
Step 1 |
Click . |
||
|
Step 2 |
Under Cisco Security Cloud Support, check the Enable Cisco Success Network check box to enable this service.
|
||
|
Step 3 |
Click Save. |
After completing these steps, your Firewall Management Center will securely share usage metrics and statistics with Cisco, enabling enhanced support and product improvement.
Configure Firewall Management Center to share device health data with Cisco
Configure Firewall Management Center to enable sharing of configuration and operational health data with Cisco. This capability allows automated problem detection and supports TAC assistance. You can automate sending device health data to Cisco for analysis and proactive issue notification.
Cisco Support Diagnostics sends configuration and operational health data to Cisco, and processes that data through our automated problem detection system. This feature also allows Cisco TAC to collect essential information from your devices during the course of a case. For users with specific service contracts, we can proactively notify you of issues.Cisco Support Diagnostics is enabled by default.
Both the Firewall Management Center and its devices communicate with Cisco. For more information, refer to Internet Resources Accessed. This feature is available in version 7.2 and later.
Before you begin
-
Enable Cisco Security Cloud integration or register with the Smart Software Manager.
-
Verify that your system meets the integration or registration requirements before proceeding.
Follow these steps to configure Firewall Management Center to share device health data with Cisco.
Procedure
|
Step 1 |
Choose . |
||
|
Step 2 |
Under Cisco Security Cloud Support, check the Enable Cisco Support Diagnostics.
|
||
|
Step 3 |
Click Save. |
After you complete this task, Firewall Management Center will send configuration and operational health data to Cisco, enabling automated diagnostics and proactive support notifications.






)
Feedback