Cisco Defense Orchestrator the best management platform for the Cisco Firewalls
Use Cases and Deployment Scope
The main issue was a scalable solution to manage our fleet of Cisco firepower threat defense firewalls. They are managed locally and manage via FMC. The Cisco Defense Orchestrator was the most financially likeable option. The price point per firewall was great with most features of the FMC on prem device. There were only a handful of features that were not moved to the cloud.
Pros
- Upgrade OS
- Manage changes at scale
- Group like configurations
- Clone configs for other firewalls
- Migrate from on prem to cloud
Cons
- FMC in the cloud needs more features like the on prem version
- A way of managing the firewalls both on box and with FMC at the same time
- A way to log local for users not wanting to log all events to the cloud
Likelihood to Recommend
Use case would be if you wanted most of the functionality of the FMC on prem but had no datacenter, cloud presence in AWS, or a cloud presence in Azure for an FMCv. You gain an always up FMC to manage the firewalls due to resiliency of the cloud FMC. You get almost all the functionality of an FMC on prem.