Friday, July 1, 2016

FireSight GUI Menu Navigation

Just some additional post setup features or settings that you might want to note in FireSight.

NAT and VPN options under Devices tab are applicable to the dedicated FirePower appliance only. You can't run these features with the ASA FirePower module.


 Objects are similar to ASA object or alias which are used to simply policy creation.


AMP is for managing malware protection for FireAMP endpoints. This is where you download the latest update from FireSight cloud database.


You can create local admin accounts under Local > User Management > Create Users. By default, there's an admin account (default password is Sourcefire). You can also integrate user accounts to external database such as LDAP and RADIUS and specify different privilege levels.



FireSight also has a syslog function under System > Monitoring > Syslog, which can be used for troubleshooting.


The device's health statistics such as uptime, memory and disk usage, etc. can be found under Monitoring > Statistics and click the device under Select Device(s). You can check the health stats on both the ASA with FirePower module and the FireSight Defense Center (DC).



You can perform backup and restore under Tools. You can also schedule system backup and its frequency.




Click on Help > About to check the FireSight DC serial number and current OS version and Help > Support site to redirect you to the TAC support website.



You can change the current user's password under admin > User Preference and also change the dashboard page settings such as home page and time zone preference.



No comments:

Post a Comment