Getting Started with the Firewall Migration Tool in Cisco Defense Orchestrator

The migration tool in CDO extracts the device configurations from the source device that you select or from a configuration file that you upload and migrates them to the cloud-delivered Firewall Management Center provisioned on your CDO tenant, after you validate the configurations. The migration tool supports most configurations; unsupported configurations must be manually configured in the cloud-delivered Firewall Management Center. See Supported Configurations.

When you initialize a new migration in Tools & Services > Firewall Migration Tool and Launch it, a cloud instance of the migration tool opens in a new browser tab and enables you to perform your migration tasks using a guided workflow. The migration tool in CDO eliminates the need for you to download and maintain the desktop version of the Secure Firewall migration tool.

You can migrate the following Cisco and third-party firewall configurations to Secure Firewall Threat Defense devices using the migration tool hosted on CDO:

  • Cisco Secure Firewall ASA

  • Secure Firewall Threat Defense managed by Firewall Device Manager

  • Check Point firewall

  • Palo Alto Networks firewall

  • Fortinet firewall


You need an admin or a super admin user role in CDO to be able to use the Firewall migration tool.