<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: What if FTD loses connection to FMC? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4177751#M1075403</link>
    <description>&lt;P&gt;Hi &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;If for any reason we lose connection to FMC and has to change the default action to&amp;nbsp; " Allow all traffic " , is there any command as such on the FTD cli ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Tue, 03 Nov 2020 06:46:05 GMT</pubDate>
    <dc:creator>ashleybabajee</dc:creator>
    <dc:date>2020-11-03T06:46:05Z</dc:date>
    <item>
      <title>What if FTD loses connection to FMC?</title>
      <link>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038435#M1067184</link>
      <description>&lt;P&gt;Since there is no way to manage FTD other than through FMC, what if for some reason; say if incorrect configuration is pushed that broke connectivity between FTD and FMC, how do I access FTD? How do I revert configuration?&lt;/P&gt;</description>
      <pubDate>Mon, 02 Mar 2020 11:24:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038435#M1067184</guid>
      <dc:creator>InTheJuniverse</dc:creator>
      <dc:date>2020-03-02T11:24:56Z</dc:date>
    </item>
    <item>
      <title>Re: What if FTD loses connection to FMC?</title>
      <link>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038478#M1067187</link>
      <description>Actually FTD has other management options - FDM, CDO and via third party using the APIs. That said, they cannot coexist with FMC management.
If you were to push an odd configuration that somehow blocked the communications between FTD and the managing FMC it could be difficult to recover. You could always "configure manager delete" and "configure manager add" to re-register with FMC and then reapply a policy that did not include the incorrect configuration. 
If you are running a 6.3 or later version and backing up your FTD device using FMC you could also restore to a known good backup.
&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/630/configuration/guide/fpmc-config-guide-v63/backup_and_restore.html#ID-2200-0000016e" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/630/configuration/guide/fpmc-config-guide-v63/backup_and_restore.html#ID-2200-0000016e&lt;/A&gt;</description>
      <pubDate>Mon, 02 Mar 2020 11:45:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038478#M1067187</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-03-02T11:45:02Z</dc:date>
    </item>
    <item>
      <title>Re: What if FTD loses connection to FMC?</title>
      <link>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038488#M1067190</link>
      <description>&lt;P&gt;Thank you as always, Marvin.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is no way to revert the configuration, right?&lt;/P&gt;</description>
      <pubDate>Mon, 02 Mar 2020 11:59:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038488#M1067190</guid>
      <dc:creator>InTheJuniverse</dc:creator>
      <dc:date>2020-03-02T11:59:28Z</dc:date>
    </item>
    <item>
      <title>Re: What if FTD loses connection to FMC?</title>
      <link>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038495#M1067191</link>
      <description>You're welcome.
There's currently (as of Firepower 6.5) no way to revert or roll back the configuration from the FTD device.</description>
      <pubDate>Mon, 02 Mar 2020 12:22:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038495#M1067191</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-03-02T12:22:15Z</dc:date>
    </item>
    <item>
      <title>Re: What if FTD loses connection to FMC?</title>
      <link>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038522#M1067192</link>
      <description>&lt;P&gt;One quick question, after losing connection with FMC, what about the existing policies on the FTD? Will FTD still be able to function with policies already downloaded to the box?&lt;/P&gt;</description>
      <pubDate>Mon, 02 Mar 2020 12:52:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038522#M1067192</guid>
      <dc:creator>InTheJuniverse</dc:creator>
      <dc:date>2020-03-02T12:52:09Z</dc:date>
    </item>
    <item>
      <title>Re: What if FTD loses connection to FMC?</title>
      <link>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038552#M1067196</link>
      <description>Yes - for the most part. There are a few things like URL lookup for non-cached entries that may be affected. Your prefilter and general Access Control Policy rules based on 5-tuples, AppID, SGT, identity etc. as well as associated IPS, SSL File policies etc. will all work just fine.</description>
      <pubDate>Mon, 02 Mar 2020 13:44:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038552#M1067196</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-03-02T13:44:29Z</dc:date>
    </item>
    <item>
      <title>Re: What if FTD loses connection to FMC?</title>
      <link>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038558#M1067197</link>
      <description>&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Mon, 02 Mar 2020 13:51:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4038558#M1067197</guid>
      <dc:creator>InTheJuniverse</dc:creator>
      <dc:date>2020-03-02T13:51:29Z</dc:date>
    </item>
    <item>
      <title>Re: What if FTD loses connection to FMC?</title>
      <link>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4177751#M1075403</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;If for any reason we lose connection to FMC and has to change the default action to&amp;nbsp; " Allow all traffic " , is there any command as such on the FTD cli ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 03 Nov 2020 06:46:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4177751#M1075403</guid>
      <dc:creator>ashleybabajee</dc:creator>
      <dc:date>2020-11-03T06:46:05Z</dc:date>
    </item>
    <item>
      <title>Re: What if FTD loses connection to FMC?</title>
      <link>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4178109#M1075430</link>
      <description>&lt;P&gt;No.&lt;/P&gt;
&lt;P&gt;You cannot change access control policy or default action for handling traffic from the FTD cli (with or without FMC management).&lt;/P&gt;</description>
      <pubDate>Tue, 03 Nov 2020 17:23:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-if-ftd-loses-connection-to-fmc/m-p/4178109#M1075430</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-11-03T17:23:30Z</dc:date>
    </item>
  </channel>
</rss>

