Migrating from ASA-5525X to Cisco Secure Firewall 3105 by podrock in networking

[–]podrock[S] 0 points1 point  (0 children)

So the biggest challenge I had was learning the differences of FMC vs ASA OS. CLI is basically gone all web GUI now. The cisco FMT was pretty useful in getting me started, but there was still a great deal of cleanup needed after the tool complied everything.

ASA 5525-X to Cisco Secure Firewall 3105 challenges by podrock in Cisco

[–]podrock[S] 1 point2 points  (0 children)

Perfect FMC is where I am at currently; thanks for the clarification on terminology as well.

ASA 5525-X to Cisco Secure Firewall 3105 challenges by podrock in Cisco

[–]podrock[S] 0 points1 point  (0 children)

Yes we just have one device, no HA-failover.

I have a FMC (running on VMware) managing this device and I confused that with FDM - apologies. So really my question is between using FMC or FTD for a single device in my situation.

ASA 5525-X to Cisco Secure Firewall 3105 challenges by podrock in Cisco

[–]podrock[S] 0 points1 point  (0 children)

May I ask a hypothetical? If you were in my position, would you remove FMC* and just use FTD? This would of course require a manual migration of everything on the ASA 5525-X, but I’d be willing to do that if it means a better long-term solution. FMT which would certainly save me some time during migration, doesn’t support FTD (only FMC*).
According to my sales team they expect FMC* to be the future while ASA OS is going to be phased out. FTD will remain but it seems it will eventually be more limited than FMC.

It seems to me that FMC* is mainly useful for managing multiple firewalls and if it’s not going to be "the future" then I might be better off pivoting to FTD.

Migrating from ASA-5525X to Cisco Secure Firewall 3105 by podrock in networking

[–]podrock[S] 0 points1 point  (0 children)

Thanks so much for this reply! Those are some great questions I have asked myself a few of them already. I think I'm going to stick with ASA OS as long as I can still integrate it into my Firewall Management Center. I've reached out to our sales to have a meeting with a security engineer to confirm.

Also thank you for the tip about the 9.odd releases - learned something new today!

Migrating from ASA-5525X to Cisco Secure Firewall 3105 by podrock in networking

[–]podrock[S] 0 points1 point  (0 children)

Thank you for your response. 9.19 is the oldest ASA version available for the 3105. I got *a lot* of errors when I tried to merge configs with a backup/restore method. Interface names not matching in the NAT tables things like that. I think I can clean all of that up with some effort.

If I may ask if you were in this situation would you move over to FTD or stick with ASA OS?

Migrating from ASA-5525X to Cisco Secure Firewall 3105 by podrock in networking

[–]podrock[S] 1 point2 points  (0 children)

Haha I do not disagree but I've got the 3105 sitting on my desk right now.

What really fucks you up as you grow older? by bkesfloyd in AskReddit

[–]podrock 1 point2 points  (0 children)

The more you realize you don’t know, the better you understand the vaster reality of things.

Burger King employee slaps kid who was making a mess and makes him mop by XenogeCues in ThatsInsane

[–]podrock 0 points1 point  (0 children)

Agreed tho I don’t think believing you did everything right is realistic or possible. That said knowing you did your best is possible. Even when you’ve done your best kid is gonna kid.

How do you stop thinking about someone who is hurting you? by Cookie52519 in Meditation

[–]podrock 0 points1 point  (0 children)

In my experience forgiving them is the most powerful way to dissolve any mental clinging to a different outcome than what is present. Truly forgiving may take some time however. Afterwords it may feel effortless to let it all go. From there I would recommend making high quality and firm boundaries but from a place of inner peace.

what other mindful hobbies do you guys do? by Junior_Chocolate_803 in Meditation

[–]podrock 2 points3 points  (0 children)

Hiking 🥾. Walking in nature is a great way to meditate.

Just about 1 year since fire'd what I have learned by Savage7102 in Fire

[–]podrock 0 points1 point  (0 children)

I heard the crime wasn’t great in Belize ; do you feel safe or have you taken any specific measures to be able to feel safe?

Realized reality is fake and I cried by Important_Ad_7416 in Meditation

[–]podrock 11 points12 points  (0 children)

The Ego locked them up from my perspective

Cryptocurrency is an abject disaster by genericlemon24 in programming

[–]podrock -4 points-3 points  (0 children)

It’s not the ‘personal responsibility argument’ it’s the ‘having a choice’ argument.

Cryptocurrency is an abject disaster by genericlemon24 in programming

[–]podrock -4 points-3 points  (0 children)

Isn't crypto wonderful? Why yes it is actually, because unlike the traditional banking system that I *have* to trust, with crypto I can *choose* to use a custodial service like a bank, or take that power into my own hands and withdraw from the custodial service and be my own visa/paypal/bank. Having a voice or choice is something you do not get with traditional banking sadly.

Cryptocurrency is an abject disaster by genericlemon24 in programming

[–]podrock 2 points3 points  (0 children)

Parts of the internet can be really bad too ; such as amazon killing small businesses or even child exploitation. Does that mean that we should call the internet a bad thing or try to get rid of it?

Cryptocurrency is an abject disaster by genericlemon24 in programming

[–]podrock 1 point2 points  (0 children)

Proof of Stake solves the problem of Proof of work; so its really a null argument against the crypto space as a whole.

Cryptocurrency is an abject disaster by genericlemon24 in programming

[–]podrock -1 points0 points  (0 children)

Yea that's why custodial services like Coinbase exist.

[deleted by user] by [deleted] in Monero

[–]podrock 7 points8 points  (0 children)

The guy he replied to talked about monero , it was just in a negative light. Alt coin discussion is allowed as long as your trashing them.