Overview
Provides instructions to configure a policy-based routing policy in Firewall Management Center (FMC) to steer Threat Defense (FTD) DNS and web traffic to the Cisco Umbrella SIG tunnel.
You can configure the PBR policy in the Policy Based Routing page by specifying the ingress interfaces, match criteria (extended access control list), and egress interfaces to route DNS and web traffic.
Procedure
| 1. | Choose , and edit the threat defense device (NGFWBR1). |
|
| 2. | Click the Routing tab on the interface view of NGFWBR1. |
|
| 3. | Click Policy Based Routing. |
|
| 4. | In the Add Policy Based Route dialog box, select the Ingress Interface from the drop-down list. |
|
| 5. | To specify the match criteria and the forward action in the policy, click Add. |
|
| 6. | In the Add Forwarding Actions dialog box, do the following:
|
|
| 7. | Click Save. The PBR policy is created as seen in the figure below.
|
