<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FTD Management interface responds to HTTPS over 443? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftd-management-interface-responds-to-https-over-443/m-p/4569111#M1088187</link>
    <description>&lt;P&gt;The management interface of my FPR1010 running 7.0.1.1 managed via FMC responds to HTTPS (tcp 443). Any reason for this?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've tried to change platform settings, but platform settings do not apply to the management interface.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There are 2 problems:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;It responds to tcp 443 with tlsv1.2 AND 1.1 (1.1 is getting flagged by scans)&lt;/LI&gt;&lt;LI&gt;why would it even respond on this? I would like to turn it off if it isn't necessary&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Thanks in advance!&lt;/P&gt;</description>
    <pubDate>Fri, 11 Mar 2022 23:25:57 GMT</pubDate>
    <dc:creator>Ralphy006</dc:creator>
    <dc:date>2022-03-11T23:25:57Z</dc:date>
    <item>
      <title>FTD Management interface responds to HTTPS over 443?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-management-interface-responds-to-https-over-443/m-p/4569111#M1088187</link>
      <description>&lt;P&gt;The management interface of my FPR1010 running 7.0.1.1 managed via FMC responds to HTTPS (tcp 443). Any reason for this?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've tried to change platform settings, but platform settings do not apply to the management interface.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There are 2 problems:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;It responds to tcp 443 with tlsv1.2 AND 1.1 (1.1 is getting flagged by scans)&lt;/LI&gt;&lt;LI&gt;why would it even respond on this? I would like to turn it off if it isn't necessary&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Thanks in advance!&lt;/P&gt;</description>
      <pubDate>Fri, 11 Mar 2022 23:25:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-management-interface-responds-to-https-over-443/m-p/4569111#M1088187</guid>
      <dc:creator>Ralphy006</dc:creator>
      <dc:date>2022-03-11T23:25:57Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Management interface responds to HTTPS over 443?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-management-interface-responds-to-https-over-443/m-p/4569195#M1088191</link>
      <description>&lt;P&gt;Known bug -&amp;nbsp;CSCvn94888&lt;/P&gt;
&lt;P&gt;The documented workaround within the bug is gonna impact the firewall/production. You will need to work with TAC for other workarounds that doesn't involve loosing configuration.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 12 Mar 2022 08:19:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-management-interface-responds-to-https-over-443/m-p/4569195#M1088191</guid>
      <dc:creator>Udupi Krishna.</dc:creator>
      <dc:date>2022-03-12T08:19:07Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Management interface responds to HTTPS over 443?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-management-interface-responds-to-https-over-443/m-p/4569271#M1088193</link>
      <description>&lt;P&gt;Wow thank you. My TAC engineer is taking forever to come to this conclusion! (I know they are short staffed). What does the workaround look like from TAC?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It looks like the issue was resolved in 6.7.... but it must not have been fixed in 7.0.1....&lt;/P&gt;</description>
      <pubDate>Sat, 12 Mar 2022 15:48:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-management-interface-responds-to-https-over-443/m-p/4569271#M1088193</guid>
      <dc:creator>Ralphy006</dc:creator>
      <dc:date>2022-03-12T15:48:27Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Management interface responds to HTTPS over 443?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-management-interface-responds-to-https-over-443/m-p/4569393#M1088202</link>
      <description>&lt;P&gt;If you take a closer look at the bug here's what it says -&amp;nbsp;&lt;EM&gt;This defect fix is not retroactive, meaning that upgrading an already registered FTD device to a fix version will not close the port, and either one of the workaround options would need to be completed, or the device reimaged directly to a fix version for this defect to close the 443 port as expected.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The workaround from TAC involves modifying few linux level parameters to stop FTD from listening on port 443. It's better to work with your TAC engineer to apply it.&lt;/P&gt;</description>
      <pubDate>Sun, 13 Mar 2022 02:13:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-management-interface-responds-to-https-over-443/m-p/4569393#M1088202</guid>
      <dc:creator>Udupi Krishna.</dc:creator>
      <dc:date>2022-03-13T02:13:53Z</dc:date>
    </item>
  </channel>
</rss>

