<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco FTD 1140 FDM in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137091#M1073062</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am running a cisco FTD 1140 with system software version&amp;nbsp;&lt;SPAN&gt;6.4.0-102 using FDM to configure the device. Now i have an issue with subinterfaces, i have a Cisco 9500 connecting to the Cisco 1140 FTD with a trunk interface. On the switch i created a vlan inteface with an IP and on the FTD i created a subinterface with the same vlan number. Created a security zone on the FTD and allowed everything on the ACL as a test. But i am not able to ping the subinterface, this is a simple setup to just test the subinterface on the FTD, but for some reason isnt working. Did someone else encounter this issue?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks in advance!&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 17 Aug 2020 20:18:24 GMT</pubDate>
    <dc:creator>jpdeboer1</dc:creator>
    <dc:date>2020-08-17T20:18:24Z</dc:date>
    <item>
      <title>Cisco FTD 1140 FDM</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137091#M1073062</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am running a cisco FTD 1140 with system software version&amp;nbsp;&lt;SPAN&gt;6.4.0-102 using FDM to configure the device. Now i have an issue with subinterfaces, i have a Cisco 9500 connecting to the Cisco 1140 FTD with a trunk interface. On the switch i created a vlan inteface with an IP and on the FTD i created a subinterface with the same vlan number. Created a security zone on the FTD and allowed everything on the ACL as a test. But i am not able to ping the subinterface, this is a simple setup to just test the subinterface on the FTD, but for some reason isnt working. Did someone else encounter this issue?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks in advance!&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Aug 2020 20:18:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137091#M1073062</guid>
      <dc:creator>jpdeboer1</dc:creator>
      <dc:date>2020-08-17T20:18:24Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FTD 1140 FDM</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137096#M1073063</link>
      <description>Hi,&lt;BR /&gt;Where are you connected to when you ping this new interface? &lt;BR /&gt;As with the ASA, you cannot be connected to one interface and send ICMP traffic through an interface to a far interface, the firewall only responds to ICMP traffic sent to the interface that traffic comes in on.&lt;BR /&gt;&lt;BR /&gt;HTH</description>
      <pubDate>Mon, 17 Aug 2020 20:26:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137096#M1073063</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2020-08-17T20:26:58Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FTD 1140 FDM</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137109#M1073064</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The cisco 9500 switch is connected as a trunk using port Twe1/0/3 to the cisco FTD 1140 port Eth1/3. Eth1/3 is the parrent interface for the subinterface. Subinterface has vlan 111 configured with ip 10.11.11.1/24 and the Cisco 9500 switch has a VLAN interface 111 with ip 10.11.11.241/24. Vlan 111 is also configured on the switch. But i cant ping between them.&lt;/P&gt;</description>
      <pubDate>Mon, 17 Aug 2020 20:46:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137109#M1073064</guid>
      <dc:creator>jpdeboer1</dc:creator>
      <dc:date>2020-08-17T20:46:40Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FTD 1140 FDM</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137240#M1073075</link>
      <description>&lt;P&gt;Did you confirm the trucking status on the switch and the spanning-tree forwarding for the VLANs of interest? Are you getting arp table entries on both devices for the other addresses in the subnet?&lt;/P&gt;</description>
      <pubDate>Tue, 18 Aug 2020 05:02:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137240#M1073075</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-08-18T05:02:28Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FTD 1140 FDM</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137289#M1073080</link>
      <description>&lt;P&gt;Hi Marvin,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i dont get a mac address when i check arp table:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Internet 10.11.11.1 0 Incomplete ARPA&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;See below config&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;FIREWALL&lt;BR /&gt;interface Ethernet1/3.111&lt;BR /&gt;vlan 111&lt;BR /&gt;nameif vmware-management&lt;BR /&gt;cts manual&lt;BR /&gt;propagate sgt preserve-untag&lt;BR /&gt;policy static sgt disabled trusted&lt;BR /&gt;security-level 0&lt;BR /&gt;ip address 10.11.11.1 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;SWITCH&lt;BR /&gt;interface TwentyFiveGigE1/0/3&lt;BR /&gt;description Connects AMS-FW1 Eth1/3 SERVERS&lt;BR /&gt;switchport trunk allowed vlan 111,300,310,320&lt;BR /&gt;switchport mode trunk&lt;BR /&gt;load-interval 30&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;interface Vlan111&lt;BR /&gt;ip address 10.11.11.241 255.255.255.0&lt;BR /&gt;end&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;VLAN0111&lt;BR /&gt;Spanning tree enabled protocol rstp&lt;BR /&gt;Root ID Priority 32879&lt;BR /&gt;Address 5ca6.2dc2.e720&lt;BR /&gt;This bridge is the root&lt;BR /&gt;Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec&lt;/P&gt;&lt;P&gt;Bridge ID Priority 32879 (priority 32768 sys-id-ext 111)&lt;BR /&gt;Address 5ca6.2dc2.e720&lt;BR /&gt;Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec&lt;BR /&gt;Aging Time 300 sec&lt;/P&gt;&lt;P&gt;Interface Role Sts Cost Prio.Nbr Type&lt;BR /&gt;------------------- ---- --- --------- -------- --------------------------------&lt;BR /&gt;Twe1/0/3 Desg FWD 20000 128.3 P2p&lt;/P&gt;</description>
      <pubDate>Tue, 18 Aug 2020 07:42:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137289#M1073080</guid>
      <dc:creator>jpdeboer1</dc:creator>
      <dc:date>2020-08-18T07:42:10Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FTD 1140 FDM</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137394#M1073089</link>
      <description>&lt;P&gt;Something strange happened, i made a config change in FDM and deployed it to the device. Deployment got stuck so i rebooted both firewall devices and after that the sub interfaces were working.&lt;/P&gt;</description>
      <pubDate>Tue, 18 Aug 2020 12:15:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ftd-1140-fdm/m-p/4137394#M1073089</guid>
      <dc:creator>jpdeboer1</dc:creator>
      <dc:date>2020-08-18T12:15:12Z</dc:date>
    </item>
  </channel>
</rss>

