Migrate FTD to Cloud Procedure
Before you begin
Before you begin the process, ensure that the following prerequisites are met:
-
A provisioned CDO tenant.
-
CDO is registered with Smart License.
-
The FMC is onboarded to CDO. Onboarding the FMC also onboards all the FTD devices registered to that FMC. See Onboard an FMC.
NoteCreate a new user in the FMC with Administrator role or a custom user role with "Devices" and "System" permissions for onboarding purpose.
CautionIf you onboard an FMC to CDO and simultaneously sign in to that on premise FMC with the same user name, the onboarding fails.
-
The FTD devices must be synchronized and have no pending changes on them. The migration job fails on a device if CDO identifies pending changes on that device.
-
FMC should allow outbound HTTP/HTTPs to upload configurations to Amazon S3.
-
CDO imports Syslog alert object used in the access control policy from the FMC. If CDO already contains an alert object with the same name but a different type (SNMP, Email), it is reused during configuration import.
The user must check whether the Syslog object name matches the existing SNMP or Email alert object in CDO. If the name matches, you must rename the Syslog object in the on premise FMC before starting the migration process.
Procedure
Step 1 | In the navigation bar on the left, click Tools & Services > Migrations > Migrate FTD to Cloud. | ||||
Step 2 | Click
| ||||
Step 3 | In the Select FMC step, you can click the Onboard an FMC link to onboard the on premise FMC if not done already. See Onboard an FMC | ||||
Step 4 | Select the FMC from the available list and click Next. You will see the FTD devices that the selected FMC manages. | ||||
Step 5 | In the Select Devices step, select the FTD devices to be migrated.
| ||||
Step 6 | In the Select Devices step, you can perform the following: ![]()
| ||||
Step 7 | Click Migrate FTD to Cloud. | ||||
Step 8 | Click View Migration to Cloud Progress to see the progress of your job. |