300-710 · Question #283
A consultant is working on a project where the customer is upgrading from a single Cisco Firepower 2130 managed by FDM to a pair of Cisco Firepower 2130s managed by FMC for high availability. The…
The correct answer is B. The current FDM configuration must be migrated to FMC using the Secure Firewall Migration. To migrate an existing Cisco Firepower Device Manager (FDM) configuration to a Firepower Management Center (FMC) for high availability, a specialized migration tool is required.
Question
A consultant is working on a project where the customer is upgrading from a single Cisco Firepower 2130 managed by FDM to a pair of Cisco Firepower 2130s managed by FMC for high availability. The customer wants the configuration of the existing device being managed by FDM to be carried over to FMC and then replicated to the additional device being added to create the high availability pair. Which action must the consultant take to meet this requirement?
Options
- AThe current FDM configuration must be configured by hand into FMC before the devices are
- BThe current FDM configuration must be migrated to FMC using the Secure Firewall Migration
- CThe FTD configuration must be converted to ASA command format, which can then be migrated
- DThe current FDM configuration will be converted automatically into FMC when the device
How the community answered
(33 responses)- A3% (1)
- B85% (28)
- C9% (3)
- D3% (1)
Why each option
To migrate an existing Cisco Firepower Device Manager (FDM) configuration to a Firepower Management Center (FMC) for high availability, a specialized migration tool is required.
Manually reconfiguring the entire FDM setup into FMC is prone to errors, highly time-consuming, and inefficient for complex configurations.
Cisco provides the Secure Firewall Migration Tool (formerly Cisco Firepower Migration Tool or FDM to FMC Migration Tool) specifically for migrating configurations from FDM-managed devices to FMC. This tool streamlines the process, ensuring that the existing security policies and network objects are translated correctly for FMC management.
Converting FTD configuration to ASA command format is irrelevant for migrating FDM to FMC, as FTD configurations are managed differently than traditional ASA CLI.
FDM configurations are not automatically converted into FMC format upon device registration; a dedicated migration process is necessary.
Concept tested: FDM to FMC configuration migration
Source: https://www.cisco.com/c/en/us/products/security/secure-firewall-migration-tool/index.html
Topics
Community Discussion
No community discussion yet for this question.