<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic You will need to rehost any in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856171#M1030952</link>
    <description>&lt;P&gt;You will need to rehost any classic licenses that you had applied using ASDM.&lt;/P&gt;
&lt;P&gt;They still need to be classic licenses. ASA FirePOWER service modules only use classic licenses. It is the newer FTD images that use smart licenses.&lt;/P&gt;
&lt;P&gt;The only time you use smart licenses with a native ASA is when it is a logical device on a FirePOWER 4100 or 9300 platform.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sat, 25 Mar 2017 14:06:03 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2017-03-25T14:06:03Z</dc:date>
    <item>
      <title>Devices unlicensed into firesight defense center when added</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856165#M1030940</link>
      <description>&lt;P&gt;Hello Everyone,&lt;/P&gt;
&lt;P&gt;I am deploying ASA 5515-X firewall with firepower 5.4 and firesight defense software 5.4 as well.&lt;/P&gt;
&lt;P&gt;Customer has vmware 2 device license and URL filtering license. I downloaded the licenses successfully from Cisco website and uploaded into FireSight successfully as shown in attached pic 1.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;The issue is when i am trying to add ASA firewall 5515 under devices&amp;gt; devices management, it adds the devices successfully and shows its information like serial no, interfaces names etc. But devices appear as unlicensed and when i try to click on URL license check box its does not become active as shown in attached pic 2.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Kindly advise what could be the issue.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks.&lt;BR /&gt;&lt;BR /&gt;----------------Update------------------&lt;BR /&gt;First the added the device (5515) to the Firesight then i added the licenses to the firesight. This is a known issue when licenses are added later.&lt;BR /&gt;&lt;BR /&gt;Looking for the solution.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 12:59:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856165#M1030940</guid>
      <dc:creator>Fazal E Rasool Khan</dc:creator>
      <dc:date>2019-03-12T12:59:45Z</dc:date>
    </item>
    <item>
      <title>Fazal,</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856166#M1030942</link>
      <description>&lt;P&gt;Fazal,&lt;/P&gt;
&lt;P&gt;You need to add the no-cost Control license to your customer's FireSIGHT and apply it to the ASA FirePOWER modules. The PAK for it would have been included in the bill of materials with the appliances and is delivered as paper copy. The Control (also known as "Protect+ Control") license is a prerequisite for the IPS, URL or Malware licenses (and associated policies) to work.&lt;/P&gt;
&lt;P&gt;If you are the partner or reseller who sold it to them, the Control license can also be viewed in the CCW order fulfillment as a "serial number" associated with the appliances.&lt;/P&gt;
&lt;P&gt;If you are unable to locate or retrieve it, please open a TAC case and the Global licensing team can assist.&lt;/P&gt;</description>
      <pubDate>Mon, 02 May 2016 03:33:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856166#M1030942</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-05-02T03:33:53Z</dc:date>
    </item>
    <item>
      <title>Thanks for your kind support</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856167#M1030944</link>
      <description>&lt;P&gt;Thanks for your kind support Marvin. Once i applied control license protection, control and URL licensing become enable.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 02 May 2016 06:18:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856167#M1030944</guid>
      <dc:creator>Fazal E Rasool Khan</dc:creator>
      <dc:date>2016-05-02T06:18:27Z</dc:date>
    </item>
    <item>
      <title>Dear Marvin,</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856168#M1030946</link>
      <description>&lt;P&gt;Dear Marvin,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Hope you are doing great. I have faced a problem today once i attempted to configure a ASA 5516 Firewall with Firepower services.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I have the control license, IPS and AMP license along with Firesight license. I have downloaded the licenses, extract and upload in ASDM. It says license have been submitted successfully. But when i tried to submit the license for Firesight, it became failed. Another problem is I can see the license status in ASDM, But when i try to see it in Firesight Management center 6.2, it doesn't show any license information. I was unable to see my license status in FMC.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;PLs suggest us what shall i need to do.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Rajiul&lt;/P&gt;</description>
      <pubDate>Thu, 23 Mar 2017 18:41:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856168#M1030946</guid>
      <dc:creator>hasanrajiul086</dc:creator>
      <dc:date>2017-03-23T18:41:56Z</dc:date>
    </item>
    <item>
      <title>Rajiul,</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856169#M1030947</link>
      <description>&lt;P&gt;Rajiul,&lt;/P&gt;
&lt;P&gt;You can only manage a FirePOWER module from one platorm or the other - not both. So if you are using local managment (ASDM) then you cannot use FirePOWER Management Center (FMC).&lt;/P&gt;
&lt;P&gt;Also, as of version 6.0, FMC does not require the classic license to be applied to it. If you have one and try to apply it you will get the invalid license type error. You still need a license but it is "right-to-use" and not one that you must (or are able to) install. Newer devices such as FTD do require that you register your FMC with a Smart license via Cisco's licensing portal.&lt;/P&gt;</description>
      <pubDate>Fri, 24 Mar 2017 02:29:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856169#M1030947</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-03-24T02:29:28Z</dc:date>
    </item>
    <item>
      <title>Dear Marvin,</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856170#M1030949</link>
      <description>&lt;P&gt;Dear Marvin,&lt;/P&gt;
&lt;P&gt;Thnx for your precious suggestions. Shall i do smart licensing for my ASA 5516 or go with classic licensing? I did see my licenses installed in ASDM as i told before, but i was unable to see it in FMC. So what shall i go now? Does the smart licensing will solve my problem or adding the classic licensing?&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Rajiul&lt;/P&gt;</description>
      <pubDate>Sat, 25 Mar 2017 13:54:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856170#M1030949</guid>
      <dc:creator>hasanrajiul086</dc:creator>
      <dc:date>2017-03-25T13:54:58Z</dc:date>
    </item>
    <item>
      <title>You will need to rehost any</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856171#M1030952</link>
      <description>&lt;P&gt;You will need to rehost any classic licenses that you had applied using ASDM.&lt;/P&gt;
&lt;P&gt;They still need to be classic licenses. ASA FirePOWER service modules only use classic licenses. It is the newer FTD images that use smart licenses.&lt;/P&gt;
&lt;P&gt;The only time you use smart licenses with a native ASA is when it is a logical device on a FirePOWER 4100 or 9300 platform.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 25 Mar 2017 14:06:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856171#M1030952</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-03-25T14:06:03Z</dc:date>
    </item>
    <item>
      <title>Dear Marvin,</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856172#M1030953</link>
      <description>&lt;P&gt;Dear Marvin,&lt;/P&gt;
&lt;P&gt;THnx for your suggestion. Forgive me if im asking same question again. Actually i am new in this field and this is my first ASA with FP deployment. I didn't see the license status in FMC 6.2 just because i was also logged in ASDM simultaneously or anything else? Shall i add the license in classic mode in FMC again? I have installed the licenses in ASDM before. does it make any impact?&lt;/P&gt;
&lt;P&gt;Sorry again for my apology.&lt;/P&gt;
&lt;P&gt;Rajiul&lt;/P&gt;</description>
      <pubDate>Sat, 25 Mar 2017 14:22:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856172#M1030953</guid>
      <dc:creator>hasanrajiul086</dc:creator>
      <dc:date>2017-03-25T14:22:39Z</dc:date>
    </item>
    <item>
      <title>You have to choose which</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856173#M1030955</link>
      <description>&lt;P&gt;You have to choose which platform you use to manage the FirePOWER module.&lt;/P&gt;
&lt;P&gt;If you use ASDM (local management) you license the module from there and only manage it there.&lt;/P&gt;
&lt;P&gt;If you use FMC then you must register the module to FMC via the device management menu and define the FMC registration at the module with the 'configure manager add...' command. Likewise, if you are using that mode, FMC is the one and only place you manage the module.&lt;/P&gt;
&lt;P&gt;If you start with ASDM and later decide to use FMC, you must rehost the licenses (via Cisco licensing portal) on FMC and then no longer use ASDM for management of the FirePOWER module.&lt;/P&gt;
&lt;P&gt;In both scenarios the licenses are classic licenses.&lt;/P&gt;</description>
      <pubDate>Sat, 25 Mar 2017 14:42:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856173#M1030955</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-03-25T14:42:35Z</dc:date>
    </item>
    <item>
      <title>Dear Marvin,</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856174#M1030956</link>
      <description>&lt;P&gt;Dear Marvin,&lt;/P&gt;
&lt;P&gt;Thnx for your kind reply. I have one issue to ask.&lt;/P&gt;
&lt;P&gt;I have the ASA 5516 with FP and it is in production now. I do have some policy for traffic and it is deployed in inside, outside and dmz. I want to redirect traffic to firepower now. Shall i do a new service policy or editing existing policy? Does &lt;EM&gt;&lt;STRONG&gt;SFR-Fail open&lt;/STRONG&gt;&lt;/EM&gt;&amp;nbsp; in service policy do the tasks? Another issue is shall i add the current network (Subnet) in firepower or firepower add this automatically when the traffic passes through the module? PLs need your suggestion regarding traffic redirection to firepower.&lt;/P&gt;
&lt;P&gt;Have a nice time.&lt;/P&gt;
&lt;P&gt;Rajiul&lt;/P&gt;</description>
      <pubDate>Sat, 25 Mar 2017 16:23:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856174#M1030956</guid>
      <dc:creator>hasanrajiul086</dc:creator>
      <dc:date>2017-03-25T16:23:06Z</dc:date>
    </item>
    <item>
      <title>We normally use the global</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856175#M1030957</link>
      <description>&lt;P&gt;We normally use the global service policy and match all traffic for inspection by the FirePOWER service module (sfr).&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The quick start guide has step by step instructions here:&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/quick_start/sfr/firepower-qsg.html#pgfId-150498&lt;/P&gt;
&lt;P&gt;For cli instructions, you can see the configuration guide here:&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/support/docs/security/asa-firepower-services/118644-configure-firepower-00.html#anc12&lt;/P&gt;</description>
      <pubDate>Sun, 26 Mar 2017 02:35:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856175#M1030957</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-03-26T02:35:07Z</dc:date>
    </item>
    <item>
      <title>Hi Marvin Rhoads,</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856176#M1030958</link>
      <description>&lt;P&gt;Hi Marvin Rhoads,&lt;/P&gt;
&lt;P&gt;i have ASA 5525X with bundle ,i am facing a problem with license , when i entered the license of firepower via ASDM but when i registers the device in firepower management center it shows unlicensed and disappeared check box of services as well .i highly appreciated your help in this regard.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 04:44:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856176#M1030958</guid>
      <dc:creator>naveedusman86</dc:creator>
      <dc:date>2017-08-11T04:44:12Z</dc:date>
    </item>
    <item>
      <title>As noted earlier in this</title>
      <link>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856177#M1030959</link>
      <description>&lt;P&gt;As noted earlier in this thread, if you manage with FMC you cannot also manage with ASDM.&lt;/P&gt;
&lt;P&gt;This means tha when you switch from one to the other you must also migrate your licenses to the new management system.&lt;/P&gt;
&lt;P&gt;So in your case you need to rehost the licenses onto FMC and then assign them to the newly registered sensor (ASA FirePOWER module).&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 12:48:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/devices-unlicensed-into-firesight-defense-center-when-added/m-p/2856177#M1030959</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-08-11T12:48:14Z</dc:date>
    </item>
  </channel>
</rss>

