<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Upgrade the FTD HA pair in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4564529#M1087957</link>
    <description>&lt;P&gt;Hi Marvin,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But when we perform upgrade in HA pair, Failover is not happened , Secondary upgrade first but this unit state not change i.e even after upgrade on higher code , this in standby state , while primary with lower code still in Active state. PFB the sniff.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sat, 05 Mar 2022 05:05:02 GMT</pubDate>
    <dc:creator>kamleshku</dc:creator>
    <dc:date>2022-03-05T05:05:02Z</dc:date>
    <item>
      <title>Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/3900606#M1010528</link>
      <description>&lt;P&gt;Hi there,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm planning to upgrade FTD version from 6.3 to 6.4. Also, My FTDs is running in HA.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As I have checked from the document &lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/200896-Upgrading-an-FTD-HA-pair-on-Firepower-ap.html" target="_self"&gt;Upgrading an FTD HA pair on Firepower appliances.&lt;/A&gt;&lt;/P&gt;&lt;P&gt;After the first FTD was&amp;nbsp;&lt;SPAN&gt;successfully upgraded, Will the upgrade of second FTD be starting automatically and active state changed also?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;However, there is some manually command from the document below that I'm not sure what exactly time I have to execute it.&lt;/SPAN&gt;&lt;/P&gt;&lt;PRE&gt;&lt;STRONG&gt;Switching to Standby&lt;/STRONG&gt;&lt;/PRE&gt;&lt;P&gt;I concern about this because of the FTDs are in production. Customer barely to give me downtime so I'm afraid of packet loss on the FTDs while upgrading.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 17:21:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/3900606#M1010528</guid>
      <dc:creator>jumperdub</dc:creator>
      <dc:date>2020-02-21T17:21:28Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/3900769#M1010529</link>
      <description>&lt;P&gt;Yes - when you upgrade from FMC the Primary/Secondary FTD upgrades will be sequenced by FMC.&lt;/P&gt;
&lt;P&gt;The manual failover you referenced is only needed when you also need to upgrade FX-OS - that's only necessary as a separate procedure for Firepower 4100 and 9300 series. 2100 series and below have FX-OS embedded in the FTD image so that step is not needed.&lt;/P&gt;</description>
      <pubDate>Wed, 31 Jul 2019 14:40:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/3900769#M1010529</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-07-31T14:40:17Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/3900783#M1010530</link>
      <description>&lt;P&gt;Thanks &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have to upgrade FX-OS also in this scenario (2.4.1.222-&amp;gt;2.6.1) for FTD 6.4 compatibility. So, this mean I have to do manaully failover.&lt;/P&gt;&lt;P&gt;Just to make me understand clearly on this step, Do I have to immediately manaul failover with command "Switching to standby" via CLI &lt;STRONG&gt;once I found the stage as pic below on FMC?&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;A title="Related image, diagram or screenshot." href="https://www.cisco.com/c/dam/en/us/support/docs/security/firepower-ngfw/200896-Upgrading-an-FTD-HA-pair-on-Firepower-ap-13.png" target="_blank" rel="noopener"&gt;&lt;IMG src="https://www.cisco.com/c/dam/en/us/support/docs/security/firepower-ngfw/200896-Upgrading-an-FTD-HA-pair-on-Firepower-ap-13.png" border="0" /&gt;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 31 Jul 2019 14:56:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/3900783#M1010530</guid>
      <dc:creator>jumperdub</dc:creator>
      <dc:date>2019-07-31T14:56:17Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/3900831#M1010531</link>
      <description>&lt;P&gt;As noted in the article you linked earlier, the FX-OS upgrade should be done separately and not from FMC.&lt;/P&gt;
&lt;P&gt;You upgrade FX-OS on the Secondary-Standby first. Then you issue the command:&lt;/P&gt;
&lt;PRE&gt;&lt;STRONG&gt;no failover active&lt;/STRONG&gt;&lt;/PRE&gt;
&lt;P&gt;on the Primary-Active unit from the cli. "switching to standby" is not a command but rather the output you should see on the appliances when you enter the command above.&lt;/P&gt;
&lt;P&gt;Then upgrade FX-OS on the Primary-(now)Standby unit.&lt;/P&gt;
&lt;P&gt;After both units have successfully completed their FX-OS upgrades you then initiate the FTD upgrade from FMC for the HA pair. No further manual failover is required from that point - the upgrade process will do that automatically.&lt;/P&gt;</description>
      <pubDate>Mon, 06 Apr 2020 06:04:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/3900831#M1010531</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-04-06T06:04:38Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4037829#M1067144</link>
      <description>&lt;P&gt;Sorry for bring to use topic agian but I have some question for FTD HA pair upgrade&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm planning to &lt;STRONG&gt;upgrade the FTD HA Pair from version 6.3 to 6.4.0.7 via FMC&lt;/STRONG&gt;, which is major upgrade. So, I'm not sure &lt;SPAN&gt;interruptions in traffic flow maybe occur. I already have checked in the Cisco document but I'm just to make sure the upgrade will not impact the traffic. Could you guys please help me to confirm on this? Thank you&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 29 Feb 2020 00:55:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4037829#M1067144</guid>
      <dc:creator>jumperdub</dc:creator>
      <dc:date>2020-02-29T00:55:27Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4037861#M1067147</link>
      <description>&lt;P&gt;If you perform the HA pair upgrade from FMC as recommended, you should not experience traffic interruption.&lt;/P&gt;
&lt;P&gt;If you redeploy policies post upgrade, you may experience a brief interruption.&lt;/P&gt;
&lt;P&gt;Source:&amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/640/relnotes/firepower-release-notes-640/upgrade.html#id_64500" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/640/relnotes/firepower-release-notes-640/upgrade.html#id_64500&lt;/A&gt;&lt;/P&gt;
&lt;H4 class="title sectiontitle"&gt;High Availability Pairs: Firepower Software Upgrade&lt;/H4&gt;
&lt;P class="p"&gt;You should not experience interruptions in traffic flow or inspection while upgrading the Firepower software on devices in high availability pairs. To ensure continuity of operations, they upgrade one at a time. Devices operate in maintenance mode while they upgrade.&lt;/P&gt;
&lt;P class="p"&gt;The standby device upgrades first. The devices switch roles, then the new standby upgrades. When the upgrade completes, the devices' roles remain switched. If you want to preserve the active/standby roles, manually switch the roles before you upgrade. That way, the upgrade process switches them back.&lt;/P&gt;</description>
      <pubDate>Sat, 29 Feb 2020 03:02:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4037861#M1067147</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-02-29T03:02:33Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4039199#M1067231</link>
      <description>&lt;P&gt;Thanks for your help Marvin,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If so, how FTD HA Pair can handle traffic while upgrading? Since we have to redeploy policy to FTD HA Pair again at post upgraded. Or is it just optional for redeploy policy task?&lt;/P&gt;</description>
      <pubDate>Tue, 03 Mar 2020 11:47:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4039199#M1067231</guid>
      <dc:creator>jumperdub</dc:creator>
      <dc:date>2020-03-03T11:47:22Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4039279#M1067237</link>
      <description>It is not mandatory to redeploy policies post-upgrade but it is highly recommended. 
The upgrade package may have a different set of Snort rules than the FMC and redeploy will sync everything as well as ensuring all aspects of the deployment process are working as designed.</description>
      <pubDate>Tue, 03 Mar 2020 13:35:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4039279#M1067237</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-03-03T13:35:03Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair 6.2.x -&gt; 6.4.x</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4059470#M1068799</link>
      <description>&lt;P&gt;I have a pair of FMC managing a pair of 4110s, all operating HA.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have to upgrade from 6.2.x to 6.4.x for both.&lt;/P&gt;&lt;P&gt;Question:&lt;/P&gt;&lt;P&gt;Is there any issues going straight from 6.2 to 6.4 or do I need to do an interim 6.3?&lt;/P&gt;&lt;P&gt;Does the information given for 6.3 to 6.4 applies for 6.2 to 6.4?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 05 Apr 2020 20:16:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4059470#M1068799</guid>
      <dc:creator>NormanSmith70793</dc:creator>
      <dc:date>2020-04-05T20:16:42Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair 6.2.x -&gt; 6.4.x</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4059581#M1068810</link>
      <description>&lt;P&gt;&lt;A title="Upgrade Path: Firepower Management Centers" href="https://www.cisco.com/c/en/us/td/docs/security/firepower/upgrade/fpmc-upgrade-guide/upgrade_firepower_management_centers.html#id_58959" target="_self"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/upgrade/fpmc-upgrade-guide/upgrade_firepower_management_centers.html#id_58959&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As Cisco document above, I think you can do direct upgrade from 6.2.x to 6.4. Then you can do minor upgrade (patch) from 6.4 to 6.4.x&lt;/P&gt;</description>
      <pubDate>Mon, 06 Apr 2020 05:11:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4059581#M1068810</guid>
      <dc:creator>jumperdub</dc:creator>
      <dc:date>2020-04-06T05:11:09Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair 6.2.x -&gt; 6.4.x</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4059599#M1068812</link>
      <description>&lt;P&gt;Upgrade your FMC HA pair first. There is no need to install 6.3 as part of that. Get them to the latest patch of 6.4 (currently 6.4.0.8).&lt;/P&gt;
&lt;P&gt;Redeploy to your Firepower 4110 HA pair after each FMC upgrade (i.e after 6.4 and then after 6.4.0.8).&lt;/P&gt;
&lt;P&gt;Then repeat for the Firepower 4110 HA pair.&lt;/P&gt;</description>
      <pubDate>Mon, 06 Apr 2020 06:08:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4059599#M1068812</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-04-06T06:08:21Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4161240#M1074412</link>
      <description>&lt;P&gt;Hi Marvin,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i need your expert advise regarding upgrade of the ASA-5555-X running v 6.2.0.2 in HA active/standby pair, Managed by the FMC (6.4.0.9)&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can we upgrade directly to the 6.4.0 from FMC or we need to upgrade FXOS separetly also. need your advise please&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ASA Version:&lt;/P&gt;&lt;P&gt;Cisco Fire Linux OS v6.2.0 (build 42)&lt;BR /&gt;Cisco ASA5555-X Threat Defense v6.2.0.2 (build 51)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 04 Oct 2020 13:39:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4161240#M1074412</guid>
      <dc:creator>asadali1979</dc:creator>
      <dc:date>2020-10-04T13:39:37Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4161245#M1074414</link>
      <description>&lt;P&gt;If you are running FTD image on ASA the required "Fire Linux OS" bits are bundled into the image and not installed separately. Only when running ASA image on a Firepower appliance or FTD image on a 4100 or 9300 series do we need to be concerned about tracking and upgrading the FXOS image separately.&lt;/P&gt;</description>
      <pubDate>Sun, 04 Oct 2020 14:22:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4161245#M1074414</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-10-04T14:22:20Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4161249#M1074417</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;You can upgrade directly from FMC:&lt;BR /&gt;&lt;BR /&gt;- First check from release notes if you can run 6.4 on ASA5555. It might&lt;BR /&gt;not be supported&lt;BR /&gt;- I know that 6.4 have couple of major bugs. Hence my advise is to go to&lt;BR /&gt;6.5 (require fmc upgrade) directly or stay at 6.3&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;**** please remember to rate useful posts&lt;BR /&gt;</description>
      <pubDate>Sun, 04 Oct 2020 14:42:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4161249#M1074417</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2020-10-04T14:42:20Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4161379#M1074436</link>
      <description>&lt;P&gt;Thanks Marvin, for the explanation.. we have the HA running as Active/Standby, if i do the upgrade directly from the FMC and select the HA Pair to upgrade..&lt;/P&gt;&lt;P&gt;How upgrade will happen, can we do the upgrade first secondary and then primary or we have to select the HA pair&lt;/P&gt;&lt;P&gt;do we need a downtime or it can be done without downtime&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Oct 2020 06:02:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4161379#M1074436</guid>
      <dc:creator>asadali1979</dc:creator>
      <dc:date>2020-10-05T06:02:21Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4161382#M1074437</link>
      <description>&lt;P&gt;When an FTD HA pair is FMC-managed you simply select the HA pair to upgrade. FMC and FTD will work together to perform the individual unit upgrades in the proper order.&lt;/P&gt;
&lt;P&gt;It will first upgrade the unit currently in Standby role, sync config and then switch it to Active role. It will then upgrade the formerly Active unit (now operating in Standby). After the HA pair upgrade is completed you should once again re-deploy policy to it to sync everything with FMC.&lt;/P&gt;</description>
      <pubDate>Mon, 05 Oct 2020 06:08:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4161382#M1074437</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-10-05T06:08:54Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4161402#M1074438</link>
      <description>&lt;P&gt;Hi Mohammed,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for the reply.. i've checked and 6.4.0 is supported for ASA-5555-X, also team doesn't want to upgrade to 6.5 currently. that's why we've to upgrade the ASA-FTD to 6.4.0.9&lt;/P&gt;&lt;P&gt;please correct me if i'm not wrong&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/640/relnotes/firepower-release-notes-640/welcome.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/640/relnotes/firepower-release-notes-640/welcome.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Oct 2020 06:48:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4161402#M1074438</guid>
      <dc:creator>asadali1979</dc:creator>
      <dc:date>2020-10-05T06:48:21Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4564529#M1087957</link>
      <description>&lt;P&gt;Hi Marvin,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But when we perform upgrade in HA pair, Failover is not happened , Secondary upgrade first but this unit state not change i.e even after upgrade on higher code , this in standby state , while primary with lower code still in Active state. PFB the sniff.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 05 Mar 2022 05:05:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4564529#M1087957</guid>
      <dc:creator>kamleshku</dc:creator>
      <dc:date>2022-03-05T05:05:02Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4806950#M1099206</link>
      <description>&lt;P&gt;Hi Marvin,&lt;/P&gt;&lt;P&gt;I am preparing to update the FXOS firmware on a pair of 4125s running in a HA pair configuration. I am doing so in response to this field notice -&amp;gt;&amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/support/docs/field-notices/720/fn72077.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/field-notices/720/fn72077.html&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My current FXOS chassis version is 2.10 which is compatible with the required firmware version of version 1.0.19&amp;nbsp;&lt;/P&gt;&lt;P&gt;is the following correct:&lt;/P&gt;&lt;P&gt;1. update the firmware on the secondary unit first (FTD2)&lt;/P&gt;&lt;P&gt;2. Once the update is completed on the secondary unit switch it to the active unit in the CLI using the command&lt;/P&gt;&lt;PRE&gt;&lt;STRONG&gt;no failover active&lt;/STRONG&gt;&lt;/PRE&gt;&lt;P&gt;(is it OK to&amp;nbsp; to make that unit the primary in the FMC GUI or, must this be done form the CLI?)&lt;/P&gt;&lt;P&gt;3. run the firmware update on FTD1 (now the secondary) then once complete switch it back to the primary&lt;/P&gt;&lt;P&gt;thank you in advance for your expert guidance&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 03 Apr 2023 19:24:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4806950#M1099206</guid>
      <dc:creator>clnjj</dc:creator>
      <dc:date>2023-04-03T19:24:32Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade the FTD HA pair</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4807760#M1099237</link>
      <description>&lt;P&gt;Check the job status entries in FMC to see if any error was reported.&lt;/P&gt;
&lt;P&gt;This is definitely unusual behavior and may require a TAC case to resolve.&lt;/P&gt;</description>
      <pubDate>Tue, 04 Apr 2023 16:38:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-the-ftd-ha-pair/m-p/4807760#M1099237</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2023-04-04T16:38:53Z</dc:date>
    </item>
  </channel>
</rss>

