Review the Network Deployment and Default Configuration
The following figure shows the default network deployment for the Firepower 2100 using the default
configuration in ASA Platform mode.
If you connect the outside interface directly to a cable modem or DSL modem, we recommend that you put
the modem into bridge mode so the ASA performs all routing and NAT for your inside networks. If you need
to configure PPPoE for the outside interface to connect to your ISP, you can do so as part of the ASDM Startup
Wizard.
If you cannot use the default FXOS and ASA Management IP addresses, see (Optional) Change the FXOS
and ASA Management IP Addresses or Gateway, on page 208.
If you need to change the inside IP address, you can do so using the ASDM Startup Wizard. For example,
you may need to change the inside IP address in the following circumstances:
• If the outside interface tries to obtain an IP address on the 192.168.1.0 network, which is a common
default network, the DHCP lease will fail, and the outside interface will not obtain an IP address. This
problem occurs because the ASA cannot have two interfaces on the same network. In this case you must
change the inside IP address to be on a new network.
• If you add the ASA to an existing inside network, you will need to change the inside IP address to be on
the existing network.
Note
Figure 123: Firepower 2100 in Your Network
Cisco Firepower 2100 Getting Started Guide
201
ASA Deployment with ASDM
Review the Network Deployment and Default Configuration