<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FMC Warnings in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4611450#M1090132</link>
    <description>&lt;P&gt;Thanks Marvin&lt;/P&gt;</description>
    <pubDate>Tue, 17 May 2022 11:17:04 GMT</pubDate>
    <dc:creator>benolyndav</dc:creator>
    <dc:date>2022-05-17T11:17:04Z</dc:date>
    <item>
      <title>FMC Warnings</title>
      <link>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609616#M1090041</link>
      <description>&lt;P&gt;HI&lt;/P&gt;&lt;P&gt;Cab anyone tell me whats causing the below please and possible fix . also below warnings are some tests I ran which were succesful&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:36 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:IPReputation [INFO] The curl option for ip&amp;nbsp; verify_peer=1&amp;nbsp; verifyhost=0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:36 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:IPReputation [INFO] List 8527413e-6167-11e1-a8bf-e99ce99bfdf1 being updated up_freq: 0 need_update: 0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:36 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:IPReputation [INFO] SF List Sourcefire_Intelligence_Feed being updated&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:36 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:IPReputation [WARN] DownloadFile: Download failure. Retries remaining:&amp;nbsp; 2&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:37 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:IPReputation [WARN] DownloadFile: Download failure. Retries remaining:&amp;nbsp; 1&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:38 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:IPReputation [WARN] Download unsucessful: SSL peer certificate or SSH remote key was not OK&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:38 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:IPReputation [WARN] Cannot download 8527413e-6167-11e1-a8bf-e99ce99bfdf1&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:38 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:IPReputation [INFO] The curl option for dns verifypeer=1&amp;nbsp;&amp;nbsp;&amp;nbsp; verifyhost=0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:38 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:URLDNS [INFO] List 43d5bee1-bd7d-4fe3-a1dd-1101181aed48 being updated up_freq: 0 need_update: 0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:38 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:URLDNS [INFO] SF URL/DNS List Cisco_DNS_Intelligence_Feed being updated&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:39 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:IPReputation [WARN] DownloadFile: Download failure. Retries remaining:&amp;nbsp; 2&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:40 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:IPReputation [WARN] DownloadFile: Download failure. Retries remaining:&amp;nbsp; 1&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:41 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:IPReputation [WARN] Download unsucessful: SSL peer certificate or SSH remote key was not OK&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;May 13 07:29:41 CFMC-01 SF-IMS[12342]: [12363] CloudAgent:IPReputation [WARN] Cannot download 43d5bee1-bd7d-4fe3-a1dd-1101181aed48&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&amp;nbsp;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;---------------------------------------------------------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;admin@CFMC-01:~$ sudo ping intelligence.sourcefire.com&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;PING intelligence.sourcefire.com (198.148.79.58) 56(84) bytes of data.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;64 bytes from intelligence.sourcefire.com (198.148.79.58): icmp_req=1 ttl=47 time=99.1 ms&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;64 bytes from intelligence.sourcefire.com (198.148.79.58): icmp_req=2 ttl=47 time=98.6 ms&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;64 bytes from intelligence.sourcefire.com (198.148.79.58): icmp_req=3 ttl=47 time=100 ms&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;64 bytes from intelligence.sourcefire.com (198.148.79.58): icmp_req=4 ttl=47 time=98.5 ms&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;64 bytes from intelligence.sourcefire.com (198.148.79.58): icmp_req=5 ttl=47 time=98.9 ms&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;64 bytes from intelligence.sourcefire.com (198.148.79.58): icmp_req=6 ttl=47 time=99.5 ms&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;64 bytes from intelligence.sourcefire.com (198.148.79.58): icmp_req=7 ttl=47 time=98.0 ms&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;^C&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;--- intelligence.sourcefire.com ping statistics ---&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;7 packets transmitted, 7 received, 0% packet loss, time 6000ms&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;rtt min/avg/max/mdev = 98.099/99.087/100.598/0.794 ms&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;---------------------------------------------------------------------------------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;admin@CFMC-01:~$ sudo telnet intelligence.sourcefire.com 443&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;Trying 198.148.79.58...&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;Connected to intelligence.sourcefire.com.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;Escape character is '^]'.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;--------------------------------------------------------------------------------------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;admin@CFMC-01:~$ sudo nslookup intelligence.sourcefire.com&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;Non-authoritative answer:&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;Name:&amp;nbsp;&amp;nbsp; intelligence.sourcefire.com&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;Address: 198.148.79.58&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;Name:&amp;nbsp;&amp;nbsp; intelligence.sourcefire.com&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;Address: 2620:28:c000:0:aba:ca:daba:58&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 13 May 2022 08:36:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609616#M1090041</guid>
      <dc:creator>benolyndav</dc:creator>
      <dc:date>2022-05-13T08:36:52Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Warnings</title>
      <link>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609619#M1090042</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/445131"&gt;@benolyndav&lt;/a&gt; does your FMC trust the root certificate in use?&lt;/P&gt;
&lt;P&gt;Are you decrypting the SSL traffic?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 13 May 2022 08:42:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609619#M1090042</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2022-05-13T08:42:28Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Warnings</title>
      <link>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609633#M1090045</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.cisco.com/t5/user/viewprofilepage/user-id/445131" target="_blank"&gt;@benolyndav&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;does your FMC trust the root certificate in use?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Trust what Root Cert ? which one do I look for ??&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Are you decrypting the SSL traffic?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Default SSL policy do not decrypt&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 13 May 2022 09:15:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609633#M1090045</guid>
      <dc:creator>benolyndav</dc:creator>
      <dc:date>2022-05-13T09:15:06Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Warnings</title>
      <link>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609735#M1090046</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/445131"&gt;@benolyndav&lt;/a&gt; the root certificates of intelligence.sourcefire.com. You can open that URL in a browser to determine the root certificates and then check the FMC to determine if you have the certificates.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What version of FMC/FTD are you running?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Has this ever worked or a new issue?&lt;/P&gt;</description>
      <pubDate>Fri, 13 May 2022 11:15:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609735#M1090046</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2022-05-13T11:15:52Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Warnings</title>
      <link>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609751#M1090048</link>
      <description>&lt;P&gt;Hi Rob&lt;/P&gt;&lt;P&gt;Version 6.6.5&lt;/P&gt;&lt;P&gt;and yes I started noticing the warning message a while ago but was advised it was a bug, now im not sure&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I do see the identTrust certs in Cisco trusted ca groups although I dont see the HydrantID cert which I see in the chain when i browse to the site.??&lt;/P&gt;</description>
      <pubDate>Fri, 13 May 2022 11:49:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609751#M1090048</guid>
      <dc:creator>benolyndav</dc:creator>
      <dc:date>2022-05-13T11:49:51Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Warnings</title>
      <link>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609761#M1090049</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/445131"&gt;@benolyndav&lt;/a&gt; it's a bug resolved in 6.6.5.2&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/660/66xx/relnotes/firepower-release-notes-66xx/resolved_issues.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/660/66xx/relnotes/firepower-release-notes-66xx/resolved_issues.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwa70008" target="_blank"&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwa70008&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 13 May 2022 12:08:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609761#M1090049</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2022-05-13T12:08:25Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Warnings</title>
      <link>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609954#M1090062</link>
      <description>&lt;P&gt;In addition to what &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt; correctly noted, there's also a Field Notice advising customers on this issue:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/field-notices/723/fn72332.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/field-notices/723/fn72332.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 13 May 2022 16:21:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4609954#M1090062</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-05-13T16:21:48Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Warnings</title>
      <link>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4611450#M1090132</link>
      <description>&lt;P&gt;Thanks Marvin&lt;/P&gt;</description>
      <pubDate>Tue, 17 May 2022 11:17:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-warnings/m-p/4611450#M1090132</guid>
      <dc:creator>benolyndav</dc:creator>
      <dc:date>2022-05-17T11:17:04Z</dc:date>
    </item>
  </channel>
</rss>

