<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Question on testing restoration of an FMC and FTD backups in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/question-on-testing-restoration-of-an-fmc-and-ftd-backups/m-p/4624431#M1090615</link>
    <description>Hi,&lt;BR /&gt;&lt;BR /&gt;I don't think you will get a document from Cisco on how to test your&lt;BR /&gt;environment because it all depends on your apps and use cases. The right&lt;BR /&gt;approach is to have a detailed test document for your environment including&lt;BR /&gt;test case, how to conduct, success/fail criteria. This way you can test&lt;BR /&gt;that everything is working after a restore in a lab or real outage.&lt;BR /&gt;&lt;BR /&gt;&amp;gt;From my side, in addition to what &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/287680"&gt;@Sheraz.Salim&lt;/a&gt; mentioned, I have seen&lt;BR /&gt;interfaces being disabled after restore and should be enabled. Pushing&lt;BR /&gt;without enabling will bring things down. Similarly, I have seen interface&lt;BR /&gt;names intermittently disappearing after restore and should be added&lt;BR /&gt;manually.&lt;BR /&gt;&lt;BR /&gt;**** plz remember to rate useful posts&lt;BR /&gt;</description>
    <pubDate>Sat, 04 Jun 2022 02:15:19 GMT</pubDate>
    <dc:creator>Mohammed al Baqari</dc:creator>
    <dc:date>2022-06-04T02:15:19Z</dc:date>
    <item>
      <title>Question on testing restoration of an FMC and FTD backups</title>
      <link>https://community.cisco.com/t5/network-security/question-on-testing-restoration-of-an-fmc-and-ftd-backups/m-p/4624335#M1090612</link>
      <description>&lt;P&gt;We are currently backing up FMC and FTD's daily and have been for about 3 years. Fortunately, we've not had to restore due to a failure, but we have done restores just to check things out. We would like to go through the entire process in a lab where we can restore and then simulate some actual traffic and verify everything works. We have some VMs that can be used, but given there are no available physical FTD's, we're planning on using FTDv's. I've found several backup and restore documents on Cisco's website, but I've not seen anything that deals with validation or testing that everything is working as expected. We'd like to have absolutely no doubts that everything is working as it should. Can anyone provide some guidance on restore validation? Thank you.&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jun 2022 20:29:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/question-on-testing-restoration-of-an-fmc-and-ftd-backups/m-p/4624335#M1090612</guid>
      <dc:creator>ABaker94985</dc:creator>
      <dc:date>2022-06-03T20:29:34Z</dc:date>
    </item>
    <item>
      <title>Re: Question on testing restoration of an FMC and FTD backups</title>
      <link>https://community.cisco.com/t5/network-security/question-on-testing-restoration-of-an-fmc-and-ftd-backups/m-p/4624372#M1090613</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1115704"&gt;@ABaker94985&lt;/a&gt; we have done a restore of FTD2140 Managed by FMC.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Background. We were hitting a bug CSCvn29443&amp;nbsp; the work around was to reimage the HA-Pair of FTD2140 (prior FTD image was 6.3 and post FTD image 6.5.x where as the FMC running version 6.7.x). once the reimage was done and FTD was added on the FMC. the restore config file of FTD6.3 was pushed to FTD6.5. all went good (pushing deployment went good no issues) however, remember routing tables (For example if you using static routes) They do not push in deployment from the restore backup. you have to manually define again the static routes and push the police. Our client is heavily based vpn tunnel on that site no issues. however if you use Cert for vpn or for anyconnect. Just export the identity certificate and manually restore the identity cert in a fresh install FTD. rest object object group acl all good. Hope this will help you.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jun 2022 21:54:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/question-on-testing-restoration-of-an-fmc-and-ftd-backups/m-p/4624372#M1090613</guid>
      <dc:creator>Sheraz.Salim</dc:creator>
      <dc:date>2022-06-03T21:54:21Z</dc:date>
    </item>
    <item>
      <title>Re: Question on testing restoration of an FMC and FTD backups</title>
      <link>https://community.cisco.com/t5/network-security/question-on-testing-restoration-of-an-fmc-and-ftd-backups/m-p/4624431#M1090615</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;I don't think you will get a document from Cisco on how to test your&lt;BR /&gt;environment because it all depends on your apps and use cases. The right&lt;BR /&gt;approach is to have a detailed test document for your environment including&lt;BR /&gt;test case, how to conduct, success/fail criteria. This way you can test&lt;BR /&gt;that everything is working after a restore in a lab or real outage.&lt;BR /&gt;&lt;BR /&gt;&amp;gt;From my side, in addition to what &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/287680"&gt;@Sheraz.Salim&lt;/a&gt; mentioned, I have seen&lt;BR /&gt;interfaces being disabled after restore and should be enabled. Pushing&lt;BR /&gt;without enabling will bring things down. Similarly, I have seen interface&lt;BR /&gt;names intermittently disappearing after restore and should be added&lt;BR /&gt;manually.&lt;BR /&gt;&lt;BR /&gt;**** plz remember to rate useful posts&lt;BR /&gt;</description>
      <pubDate>Sat, 04 Jun 2022 02:15:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/question-on-testing-restoration-of-an-fmc-and-ftd-backups/m-p/4624431#M1090615</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2022-06-04T02:15:19Z</dc:date>
    </item>
    <item>
      <title>Re: Question on testing restoration of an FMC and FTD backups</title>
      <link>https://community.cisco.com/t5/network-security/question-on-testing-restoration-of-an-fmc-and-ftd-backups/m-p/4625929#M1090703</link>
      <description>&lt;P&gt;Thank you. Both posts were very useful.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Jun 2022 13:22:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/question-on-testing-restoration-of-an-fmc-and-ftd-backups/m-p/4625929#M1090703</guid>
      <dc:creator>ABaker94985</dc:creator>
      <dc:date>2022-06-06T13:22:32Z</dc:date>
    </item>
    <item>
      <title>Re: Question on testing restoration of an FMC and FTD backups</title>
      <link>https://community.cisco.com/t5/network-security/question-on-testing-restoration-of-an-fmc-and-ftd-backups/m-p/4625938#M1090704</link>
      <description>&lt;P&gt;Just to Add what I have said. you still need to add your FTD (new one) in NAT section and on the platform setting doing this it will save your time.&lt;/P&gt;</description>
      <pubDate>Mon, 06 Jun 2022 13:33:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/question-on-testing-restoration-of-an-fmc-and-ftd-backups/m-p/4625938#M1090704</guid>
      <dc:creator>Sheraz.Salim</dc:creator>
      <dc:date>2022-06-06T13:33:28Z</dc:date>
    </item>
  </channel>
</rss>

