Conversion Mapping Overview
The migration tool converts an ASA configuration into a Firepower Threat Defense configuration as follows:
Entity |
ASA Configuration |
Firepower Threat Defense Configuration |
---|---|---|
Network objects |
Network objects Network object groups Nested network object groups |
Network objects Network object groups Nested network object groups |
Service objects |
Service objects Service object groups Nested service object groups |
Multiple port objects Multiple port object groups Multiple or flattened port object groups For more information, see Service Object and Service Group Conversion |
Access rules |
Access rules |
Access control policy or prefilter policy (as selected) |
NAT rules |
Twice NAT rules Network object NAT rules |
Manual NAT rules Auto NAT rules |