Use the Security Cloud Control Command Line Interface Tool

You can use the Command Line Interface tool for managing or troubleshooting devices. The commands supported with this tool depend on the type of device. For the ASA, for example, you can use the full CLI. But for the Firewall Threat Defense, command support is limited to select show commands.

You can send commands to a single device or to multiple devices simultaneously.

See the following supported device types:

  • ASA

    Commands are entered directly in global configuration mode. For detailed ASA CLI documentation, see ASA Command Line Interface Documentation.

  • Cloud-Delivered Firewall Management Center-managed Firewall Threat Defense

    Your command will be sent to either the Firewall Threat Defense CLI or the diagnostic CLI, depending on which command it is. Supported commands for Firewall Threat Defense are shown onscreen. These commands are a subset of commands that you can enter at the CLI. In addition, you cannot filter show command by piping the output (|) like you can directly at the CLI or in the Threat Defense CLI tool in the Cloud-Delivered Firewall Management Center.

    For diagnostic CLI output, see the ASA command reference guide.

    For Firewall Threat Defense CLI documentation, see Cisco Firepower Threat Defense Command Reference.

  • Cisco IOS

    Commands are entered in user EXEC mode. You need to enter enable followed by configure terminal to execute them in Global Configuration mode. For Cisco IOS CLI documentation, see Networking Software (IOS & NX-OS) for your IOS version.

  • SSH