Cisco FMC通过命令行导入备份过的配置

现网1台FMCv要迁移到新装的FMCv300,
步骤如下:
1 老FMCv导出配置
2 新装1台FMCv300虚拟机,上传老FMCv的配置
3 FMCv300 恢复老FMCv的配置

但FMCv300在web页面导入配置时报错,“平台不兼容”
查询得知不同类型的平台不能通过web恢复配置,需要通过命令行。

操作如下:
1 FMCv300通过web页面上传FMCv的配置
2 通过命令行恢复,操作如下:

root@fmc724v300:/var/sf/bin# sf-migration.pl /var/sf/backup/1126forfmcv300-2024-11-26T06-58-46.tar

Untaring /var/sf/backup/1126forfmcv300-2024-11-26T06-58-46.tar to read ims.conf

Source Model = Secure Firewall Management Center for VMware Target Model = Secure Firewall Management Center for VMware 

No migration path exists from the Secure Firewall Management Center for VMware -> Secure Firewall Management Center for VMware 

 

******************WARNING: Running this script will modify Management IP Address of this Firepower Management Center using configurations from backup file. Make sure that Firepower Management Center from where backup was taken, is disconnected from network to avoid IP conflict.*********************

 Are you sure you want to continue (Y/N)Y

Migrating device . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .  . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Broadcast message from root@fmc724v300 (Tue Nov 26 11:21:59 2024):
The system is going down for reboot NOW!

Rebooting. . .
root@fmc724v300:/var/sf/bin#

官方链接如下:
https://www.cisco.com/c/en/us/td/docs/security/firepower/fmc_model_migration/b_FMC_Model_Migration_Guide/m_fmc_migration_workflow.html#id_111629

posted @ 2024-11-27 16:11  朱军杰  阅读(22)  评论(0)    收藏  举报  来源