<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Unable to remove the management interface from the logical device on the Cisco Firepower Chassis Manager in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4390941#M1080202</link>
    <description>&lt;P&gt;As far as I know, when you are operating an ASA in platform mode on a Firepower appliance it is required to allocate a physical management interface to it.&lt;/P&gt;</description>
    <pubDate>Wed, 21 Apr 2021 17:42:35 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2021-04-21T17:42:35Z</dc:date>
    <item>
      <title>Unable to remove the management interface from the logical device on the Cisco Firepower Chassis Manager</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4389276#M1080111</link>
      <description>&lt;P&gt;Hi all&lt;/P&gt;&lt;P&gt;I tried to remove interface management from logical device because I'm not use anymore, but it's not possible. If you try to change type for interface from fxos (/ssa/slot/app-instance* # clear-mgmt-bootstrap), it failed : Error: Update failed: [The interface type cannot be changed while the interface is in use. Remove the interface from the Logical Device before you attempt to change the type.]&lt;/P&gt;&lt;P&gt;I had to delete the logical device, change the interface type and re-create the logical device from scratch.&lt;/P&gt;&lt;P&gt;Anyone have suggest for it?&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;Domenico&lt;/P&gt;</description>
      <pubDate>Mon, 19 Apr 2021 09:47:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4389276#M1080111</guid>
      <dc:creator>domevam</dc:creator>
      <dc:date>2021-04-19T09:47:39Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to remove the management interface from the logical device on the Cisco Firepower Chassis Manager</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4389279#M1080112</link>
      <description>&lt;P&gt;I assume you have done this, but just to check, have you removed all configuration that references the mgmt interface?&amp;nbsp; If you have, then I assume the issue is because the management interface is not only used for management interface but also for diagnostic interface.&lt;/P&gt;</description>
      <pubDate>Mon, 19 Apr 2021 09:57:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4389279#M1080112</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2021-04-19T09:57:05Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to remove the management interface from the logical device on the Cisco Firepower Chassis Manager</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4389515#M1080123</link>
      <description>&lt;P&gt;Interface was configured only as management and not for&amp;nbsp;&lt;SPAN&gt;diagnostic usage.&amp;nbsp;Once it is configured as management, it is impossible to change its type and disassociate it from the logical device.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 19 Apr 2021 16:01:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4389515#M1080123</guid>
      <dc:creator>domevam</dc:creator>
      <dc:date>2021-04-19T16:01:08Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to remove the management interface from the logical device on the Cisco Firepower Chassis Manager</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4389557#M1080127</link>
      <description>&lt;P&gt;The management 0/0 interface has two separate interfaces associated with it.&amp;nbsp; So since the diagnostic interface is also associated with the interface it is logical that you will not be able to delete the management interface without having to rebuild it.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here is a solution from Cisco documentation that you might try next time.&lt;/P&gt;
&lt;P&gt;from&amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/640/fdm/fptd-fdm-config-guide-640/fptd-fdm-interfaces.html#concept_EB3DE1BBDB9547EC8866365C7BC11792" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/640/fdm/fptd-fdm-config-guide-640/fptd-fdm-interfaces.html#concept_EB3DE1BBDB9547EC8866365C7BC11792&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="ph"&gt;(Hardware devices.)&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN&gt;One way to configure Management/Diagnostic is to not wire the physical port to a network. Instead, configure the Management IP address only, and configure it to use the data interfaces as the gateway for obtaining updates from the internet. Then, open the inside interfaces to HTTPS/SSH traffic (by default, HTTPS is enabled) and open Firepower Device Manager using the inside IP address (see&amp;nbsp;&lt;/SPAN&gt;&lt;A class="xref" href="https://www.cisco.com/c/en/us/td/docs/security/firepower/640/fdm/fptd-fdm-config-guide-640/fptd-fdm-system.html#id_10224" target="_blank"&gt;Configuring the Management Access List&lt;/A&gt;&lt;SPAN&gt;).&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 19 Apr 2021 17:14:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4389557#M1080127</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2021-04-19T17:14:11Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to remove the management interface from the logical device on the Cisco Firepower Chassis Manager</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4390603#M1080185</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;my depolyment not involve FTD but ASA in platform mode. So there is no way to disassociate management interface from logical device, that's all or you have a solution for that, without remove all logical device??&lt;/P&gt;&lt;P&gt;thamks for support.&lt;/P&gt;</description>
      <pubDate>Wed, 21 Apr 2021 08:35:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4390603#M1080185</guid>
      <dc:creator>domevam</dc:creator>
      <dc:date>2021-04-21T08:35:39Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to remove the management interface from the logical device on the Cisco Firepower Chassis Manager</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4390941#M1080202</link>
      <description>&lt;P&gt;As far as I know, when you are operating an ASA in platform mode on a Firepower appliance it is required to allocate a physical management interface to it.&lt;/P&gt;</description>
      <pubDate>Wed, 21 Apr 2021 17:42:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-remove-the-management-interface-from-the-logical/m-p/4390941#M1080202</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2021-04-21T17:42:35Z</dc:date>
    </item>
  </channel>
</rss>

