<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Unable to register ASA with FP services at FMC in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/unable-to-register-asa-with-fp-services-at-fmc/m-p/3766058#M1011877</link>
    <description>&lt;P&gt;Did you try to "configure manager delete" and then "configure manager add" from the ASA Firepower service module?&lt;/P&gt;</description>
    <pubDate>Tue, 18 Dec 2018 17:39:21 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2018-12-18T17:39:21Z</dc:date>
    <item>
      <title>Unable to register ASA with FP services at FMC</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-register-asa-with-fp-services-at-fmc/m-p/3765679#M1011875</link>
      <description>&lt;P&gt;Hello Community,&lt;/P&gt;&lt;P&gt;I´m not able to register my ASA with Firepower at the FMC after I deleted the device. Following error message at the FMC:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;FMC: pigtail | grep -IP&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;MSGS: 12-18 09:32:42 ifs-fire-v1 SF-IMS[5083]: [5083] sfmgr:sfmanager [INFO] set peer PEER_ADD to register FP-IP-OF-ASA&lt;BR /&gt;MSGS: 12-18 09:32:42 ifs-fire-v1 SF-IMS[5082]: [5082] sftunneld:sf_peers [INFO] Using a 20 entry queue for FP-IP-OF-ASA - 8104&lt;BR /&gt;MSGS: 12-18 09:32:42 ifs-fire-v1 SF-IMS[5082]: [5082] sftunneld:sf_peers [INFO] Using a 20 entry queue for FP-IP-OF-ASA - 8121&lt;BR /&gt;MSGS: 12-18 09:32:42 ifs-fire-v1 SF-IMS[5082]: [5082] sftunneld:stream_file [INFO] Stream CTX initialized for FP-IP-OF-ASA&lt;BR /&gt;MSGS: 12-18 09:32:42 ifs-fire-v1 SF-IMS[5082]: [5082] sftunneld:sftunnel [INFO] set peer PEER_ADD FP-IP-OF-ASA to register&lt;BR /&gt;MOJO: 12-18 09:32:42 [Tue 2018] [info] [5854] Exists file /var/sf/peers/FP-IP-OF-ASA/mgr.sox? 180 at PERLLIB/SF/PeerManager/RegUtils.pm line 629.&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [5139] sftunneld:sf_peers [INFO] Peer FP-IP-OF-ASA needs a single connection&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [5139] sftunneld:sf_connections [INFO] Start connection to : FP-IP-OF-ASA (wait 0 seconds is up)&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_peers [INFO] Peer FP-IP-OF-ASA needs a single connection&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_ssl [INFO] Connect to FP-IP-OF-ASA on port 8305 - eth0&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_ssl [INFO] Initiate IPv4 connection to FP-IP-OF-ASA (via eth0)&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_ssl [INFO] Initiating IPv4 connection to FP-IP-OF-ASA:8305/tcp&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_ssl [INFO] Wait to connect to 8305 (IPv6): FP-IP-OF-ASA&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_ssl [INFO] Connected to FP-IP-OF-ASA:8305 (IPv4)&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_ssl [INFO] Successfully connected using SSL to: 'FP-IP-OF-ASA'&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_ssl [INFO] Peer FP-IP-OF-ASA supports separate events connection&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_ssl [INFO] Peer FP-IP-OF-ASA registration is complete remotely&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_ssl [INFO] Connect: AUTHENTICATED peer 'FP-IP-OF-ASA'&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_peers [INFO] Peer FP-IP-OF-ASA needs a single connection&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_ssl [INFO] Connect: Start child thread for peer 'FP-IP-OF-ASA'&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_channel [INFO] &amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt; initChannels peer: FP-IP-OF-ASA &amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:stream_file [INFO] Stream CTX destroyed for FP-IP-OF-ASA&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_connections [INFO] Socket '/var/sf/peers/FP-IP-OF-ASA/conn.sox': 71 is accepting services.&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:stream_file [INFO] Stream CTX initialized for FP-IP-OF-ASA&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_connections [INFO] Peer FP-IP-OF-ASA main thread started&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_heartbeat [INFO] Saved SW VERSION from peer FP-IP-OF-ASA (6.2.3.2)&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_connections [INFO] Need to send SW version and Published Services to FP-IP-OF-ASA&lt;BR /&gt;MSGS: 12-18 09:32:47 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_channel [INFO] &amp;gt;&amp;gt; ChannelState do_dataio_for_heartbeat peer FP-IP-OF-ASA / channelA / CONTROL [ msgSock &amp;amp; ssl_context ] &amp;lt;&amp;lt;&lt;BR /&gt;MSGS: 12-18 09:32:50 ifs-fire-v1 SF-IMS[5083]: [5201] sfmgr:sfmanager [INFO] Established connection to sftunnel for peer FP-IP-OF-ASA (fd 18)&lt;BR /&gt;MSGS: 12-18 09:32:50 ifs-fire-v1 SF-IMS[5083]: [10675] sfmgr:sfmanager [INFO] Writing out service number - SFMGR for peer FP-IP-OF-ASA&lt;BR /&gt;MSGS: 12-18 09:32:50 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_heartbeat [INFO] RPC Service is published for peer FP-IP-OF-ASA.&lt;BR /&gt;MSGS: 12-18 09:32:50 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_peers [INFO] Using a 20 entry queue for FP-IP-OF-ASA - 6666&lt;BR /&gt;MSGS: 12-18 09:32:50 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_connections [INFO] Need to send SW version and Published Services to FP-IP-OF-ASA&lt;BR /&gt;MSGS: 12-18 09:32:50 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_channel [INFO] &amp;gt;&amp;gt; ChannelState do_dataio_for_heartbeat peer FP-IP-OF-ASA / channelA / CONTROL [ msgSock &amp;amp; ssl_context ] &amp;lt;&amp;lt;&lt;BR /&gt;MSGS: 12-18 09:32:50 ifs-fire-v1 SF-IMS[5083]: [10674] sfmgr:sfmanager [INFO] Waiting for RPC service to be published on peer FP-IP-OF-ASA&lt;BR /&gt;MSGS: 12-18 09:32:52 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_heartbeat [INFO] Saved SW VERSION from peer FP-IP-OF-ASA (6.2.3.2)&lt;BR /&gt;MSGS: 12-18 09:32:52 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_heartbeat [INFO] (2)FORWARDED Product Info received from peer FP-IP-OF-ASA to SFMGR&lt;BR /&gt;MSGS: 12-18 09:32:52 ifs-fire-v1 SF-IMS[5083]: [10674] sfmgr:sfmanager [INFO] SFMGR is published on peer FP-IP-OF-ASA&lt;BR /&gt;MSGS: 12-18 09:32:52 ifs-fire-v1 SF-IMS[5083]: [10674] sfmgr:sfmanager [INFO] SFMGR: UNIX socket '/var/sf/peers/FP-IP-OF-ASA/mgr.sox': 19 is listening...&lt;BR /&gt;MOJO: 12-18 09:32:56 [Tue 2018] [info] [5854] Remote::SF::PeerManager::getPeerInfoLocal(FP-IP-OF-ASA): Permission denied (role=manager) for peer IP-OF-FMC,07cbfcae-cf87-11e7-a4be-78217e6a16c9,07cbfcae-cf87-11e7-a4be-78217e6a16c9) to execute SF::PeerManager::getPeerInfoLocal. at PERLLIB/SF/RemoteRun.pm line 835.&lt;BR /&gt;MOJO: 12-18 09:33:10 [Tue 2018] [info] [5854] Remote::SF::PeerManager::getPeerInfoLocal(FP-IP-OF-ASA): Permission denied (role=manager) for peer IP-OF-FMC,07cbfcae-cf87-11e7-a4be-78217e6a16c9,07cbfcae-cf87-11e7-a4be-78217e6a16c9) to execute SF::PeerManager::getPeerInfoLocal. at PERLLIB/SF/RemoteRun.pm line 835.&lt;BR /&gt;MOJO: 12-18 09:33:24 [Tue 2018] [info] [5854] Remote::SF::PeerManager::getPeerInfoLocal(FP-IP-OF-ASA): Permission denied (role=manager) for peer IP-OF-FMC,07cbfcae-cf87-11e7-a4be-78217e6a16c9,07cbfcae-cf87-11e7-a4be-78217e6a16c9) to execute SF::PeerManager::getPeerInfoLocal. at PERLLIB/SF/RemoteRun.pm line 835.&lt;BR /&gt;MOJO: 12-18 09:33:38 [Tue 2018] [info] [5854] Remote::SF::PeerManager::getPeerInfoLocal(FP-IP-OF-ASA): Permission denied (role=manager) for peer IP-OF-FMC,07cbfcae-cf87-11e7-a4be-78217e6a16c9,07cbfcae-cf87-11e7-a4be-78217e6a16c9) to execute SF::PeerManager::getPeerInfoLocal. at PERLLIB/SF/RemoteRun.pm line 835.&lt;BR /&gt;MOJO: 12-18 09:37:08 [Tue 2018] [info] [5854] Not Connected FP-IP-OF-ASA... at PERLLIB/SF/PeerManager/RegUtils.pm line 771.&lt;BR /&gt;MOJO: 12-18 09:37:08 [Tue 2018] [info] [5854] Could not establish connection with FP-IP-OF-ASA at PERLLIB/SF/PeerManager/Registration.pm line 1284.&lt;BR /&gt;MSGS: 12-18 09:37:09 ifs-fire-v1 SF-IMS[5083]: [5083] sfmgr:sfmanager [INFO] set peer PEER_REMOVED pending FP-IP-OF-ASA&lt;BR /&gt;MSGS: 12-18 09:37:09 ifs-fire-v1 SF-IMS[5083]: [5083] sfmgr:sfmanager [INFO] MARK TO FREE peer FP-IP-OF-ASA&lt;BR /&gt;MSGS: 12-18 09:37:09 ifs-fire-v1 SF-IMS[5082]: [5082] sftunneld:sftunnel [INFO] set peer PEER_REMOVED FP-IP-OF-ASA pending&lt;BR /&gt;MSGS: 12-18 09:37:09 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_connections [INFO] Peer FP-IP-OF-ASA is removed...Exiting child thread&lt;BR /&gt;MSGS: 12-18 09:37:09 ifs-fire-v1 SF-IMS[5082]: [10577] sftunneld:sf_connections [INFO] &amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt;&amp;lt; ShutDownPeer FP-IP-OF-ASA &amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Restart of FMC and ASA did not solve the problem by the way.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Greetings&lt;/P&gt;&lt;P&gt;Philipp&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 16:35:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-register-asa-with-fp-services-at-fmc/m-p/3765679#M1011875</guid>
      <dc:creator>pgerstenberger</dc:creator>
      <dc:date>2020-02-21T16:35:11Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to register ASA with FP services at FMC</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-register-asa-with-fp-services-at-fmc/m-p/3766058#M1011877</link>
      <description>&lt;P&gt;Did you try to "configure manager delete" and then "configure manager add" from the ASA Firepower service module?&lt;/P&gt;</description>
      <pubDate>Tue, 18 Dec 2018 17:39:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-register-asa-with-fp-services-at-fmc/m-p/3766058#M1011877</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-12-18T17:39:21Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to register ASA with FP services at FMC</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-register-asa-with-fp-services-at-fmc/m-p/3766456#M1011881</link>
      <description>&lt;P&gt;Hello Marvin,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;yes. I already tried to delete and add the manager without success. But meanwhile i solved the problem.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I made manually an update of the Firepower instance of the ASA. After that i was able to register the device in the FMC again.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I followed these instructions which solved my problem.&lt;/P&gt;&lt;P&gt;&lt;A href="https://ciscoskills.net/2017/07/12/update-firepower-devices-manually/&amp;nbsp;" target="_blank"&gt;https://ciscoskills.net/2017/07/12/update-firepower-devices-manually/&amp;nbsp;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks and regards,&lt;/P&gt;&lt;P&gt;Philipp&lt;/P&gt;</description>
      <pubDate>Wed, 19 Dec 2018 07:56:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-register-asa-with-fp-services-at-fmc/m-p/3766456#M1011881</guid>
      <dc:creator>pgerstenberger</dc:creator>
      <dc:date>2018-12-19T07:56:18Z</dc:date>
    </item>
  </channel>
</rss>

