<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FMC Version Suggestions for Upgrade in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666443#M1092540</link>
    <description>&lt;P&gt;Hi &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/287680"&gt;@Sheraz.Salim&lt;/a&gt;. A TAC engineer told me earlier this week to expect 7.0.4 on 10 August 2022. I have a customer with whom I'm hitting a bug that should be fixed in 7.0.4 so I'm hoping he's right.&lt;/P&gt;
&lt;P&gt;As with all Cisco dates, I will believe it only after it appears on the downloads page.&lt;/P&gt;</description>
    <pubDate>Tue, 09 Aug 2022 13:29:15 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2022-08-09T13:29:15Z</dc:date>
    <item>
      <title>FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4665842#M1092510</link>
      <description>&lt;P&gt;Hi all -&lt;/P&gt;&lt;P&gt;I am beginning a project to migrate from 6.6.5, that is controlling an old AMP8150 and a pair of FTD1100s.&amp;nbsp; The Migration is away from the 8150 and a pair of ASA5500 to the Secure Firewall 3100 series, I have been reading the documentation I'll have to stand up a FMC 7.1 or above to control the new units (they shipped with 7.1 installed).&amp;nbsp; My understanding is that the older unit cannot be managed by a version above 6.6.5 so I'm looking at running 2 FMCs during the process.&amp;nbsp; I want to migrate my objects and current rules to minimize some of the hand configuration, I plan to run a test import of the current backup.&amp;nbsp; Eventually I will move the 1100s over to the new install, but that will be planned for after since it'll have some downtime.&lt;/P&gt;&lt;P&gt;- I'm looking to see what version of FMC you all are using 7.1 or 2?&lt;/P&gt;&lt;P&gt;- Any landmines you all may have stepped on that I could avoid?&lt;/P&gt;&lt;P&gt;- Better way you all may have done this?&lt;/P&gt;&lt;P&gt;Thank you!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Aug 2022 17:05:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4665842#M1092510</guid>
      <dc:creator>rsharp001</dc:creator>
      <dc:date>2022-08-08T17:05:48Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4665874#M1092515</link>
      <description>&lt;P&gt;FMC 7.1 is a good go, if you looking to 7.2 look at release notes and caveats.&lt;/P&gt;
&lt;P&gt;i suggest offline build in parallel with exiting setup and test if you can offline all rules are migrated as expected. some offline testing. and making small downtime window to cutover to new environment is best option I see.&lt;/P&gt;
&lt;P&gt;also make sure to keep the old kit still live and not connected, in case required to fallback plan.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Aug 2022 18:32:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4665874#M1092515</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2022-08-08T18:32:31Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666071#M1092521</link>
      <description>&lt;P&gt;&amp;nbsp;7.2 will be a longer term release than 7.1. Of course 7.1 is the minimum required for Firepower 3100. Personally I would go with FMC 7.2 and 7.2 on the 3100 as well. I'm not running 7.2 on any firewalls yet but have it on a couple of FMCs without any problem. As far as Gold Star, it will likely be moved to 7.0.4 (out very soon but a moot point for your situation) and then eventually move next to 7.2.x.&lt;/P&gt;
&lt;P&gt;You cannot restore an older backup onto a new system. You could restore onto a freshly built FMC 6.6.5 and then upgrade it to 7.1/7.2 directly.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Aug 2022 02:23:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666071#M1092521</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-08-09T02:23:34Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666154#M1092527</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do you know why 7.0.4 will be relesed only few weeks after 7.0.3 despite 7.0.3, according to bug tool doesn't have any relevant but?&lt;/P&gt;</description>
      <pubDate>Tue, 09 Aug 2022 07:38:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666154#M1092527</guid>
      <dc:creator>Massimo Baschieri</dc:creator>
      <dc:date>2022-08-09T07:38:18Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666174#M1092530</link>
      <description>&lt;P&gt;we hit bug in 7.0.3 where the deployment the the FTD/Sensors keep failing the bug ID &lt;A href="https://cdetsng.cisco.com/summary/#/defect/CSCwc34590" target="_blank"&gt;CSCwc34590&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 09 Aug 2022 08:32:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666174#M1092530</guid>
      <dc:creator>Sheraz.Salim</dc:creator>
      <dc:date>2022-08-09T08:32:33Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666401#M1092532</link>
      <description>&lt;P&gt;Thank you Marvin.&amp;nbsp; On a restore, does it bring all the underlying OS settings over, like IP/hostname, or is it just going to be the application settings?&lt;/P&gt;&lt;P&gt;When moving the 1100 boxes, 2 in HA, can I simply just point them at the new manager from the CLI or am I going to need to break their HA and migrate individual and then rebuild?&amp;nbsp; Downtime will be scheduled either way, more curious if I must go a longer route or if there is an easy button.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Aug 2022 12:19:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666401#M1092532</guid>
      <dc:creator>rsharp001</dc:creator>
      <dc:date>2022-08-09T12:19:09Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666434#M1092536</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/287680"&gt;@Sheraz.Salim&lt;/a&gt; the link you provided is Cisco-internal. The public link is &lt;A href="https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwc34590" target="_blank"&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwc34590&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 09 Aug 2022 13:15:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666434#M1092536</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-08-09T13:15:55Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666435#M1092537</link>
      <description>&lt;P&gt;routing tables (For example if you using static routes) They do not push in deployment from the restore backup. you have to manually define again the static routes and push the police. if you use Cert for vpn or for anyconnect or site-to-site. Just export the identity certificate and manually restore the identity cert in a fresh install FTD. rest object object group acl all good.&lt;/P&gt;
&lt;P&gt;You still need to add your FTD (new one) in NAT section and on the platform setting doing this it will save your time.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Aug 2022 13:16:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666435#M1092537</guid>
      <dc:creator>Sheraz.Salim</dc:creator>
      <dc:date>2022-08-09T13:16:30Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666436#M1092538</link>
      <description>&lt;P&gt;Hey Marvin. hope you doing well. Oh did not notice that. Thank you for this. I was just with TAC today I asked them when the 7.0.4 is due. they could not answer this &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&amp;nbsp;&amp;nbsp; Do you have any idea when its due to release?&lt;/P&gt;</description>
      <pubDate>Tue, 09 Aug 2022 13:18:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666436#M1092538</guid>
      <dc:creator>Sheraz.Salim</dc:creator>
      <dc:date>2022-08-09T13:18:06Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666438#M1092539</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/279927"&gt;@rsharp001&lt;/a&gt; I have used the FMC model migration script along with the configure-model.sh script to fool it into allowing migration paths that are not directly allowed in the first script (i.e. same-same model). It uses a backup file as its input and brings over EVERYTHING. IP address, host name, etc. If you want to keep both online, then just change back the address of the new one after running the script.&lt;/P&gt;
&lt;P&gt;To add the HA pair on the new FMC, it will already know about them from the restore operation. The devices themselves will need a configure manager delete / add cycle to make them sync up with the new FMC.&lt;/P&gt;
&lt;P&gt;Regarding the timing of 7.0.4, the release notes' published bugs for 7.0.3 is not complete - it only includes public-facing bugs. So 7.0.4 will cover more than just the open caveats publicly listed for 7.0.3&lt;/P&gt;</description>
      <pubDate>Tue, 09 Aug 2022 13:26:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666438#M1092539</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-08-09T13:26:35Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666443#M1092540</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/287680"&gt;@Sheraz.Salim&lt;/a&gt;. A TAC engineer told me earlier this week to expect 7.0.4 on 10 August 2022. I have a customer with whom I'm hitting a bug that should be fixed in 7.0.4 so I'm hoping he's right.&lt;/P&gt;
&lt;P&gt;As with all Cisco dates, I will believe it only after it appears on the downloads page.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Aug 2022 13:29:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4666443#M1092540</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-08-09T13:29:15Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4667036#M1092544</link>
      <description>&lt;P&gt;"&lt;SPAN&gt;Regarding the timing of 7.0.4, the release notes' published bugs for 7.0.3 is not complete - it only includes public-facing bugs. So 7.0.4 will cover more than just the open caveats publicly listed for 7.0.3"&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;That's very annoying, apart from cisco hiding the most dangerous bugs to its customers, which is by itself a very bad habit, many bugs appear to be related to a wrong or incomplete list of releases/devices in bug tool.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;How can a poor engineer be safe to upgrade his deployments?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 10 Aug 2022 07:50:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4667036#M1092544</guid>
      <dc:creator>Massimo Baschieri</dc:creator>
      <dc:date>2022-08-10T07:50:40Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4667219#M1092554</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/290657"&gt;@Massimo Baschieri&lt;/a&gt; I feel your pain. I have personally brought this up as a concern with multiple Cisco TMEs, SEs, product managers etc. over the years (&amp;gt;20) and seen zero progress on this practice changing. That tells me it's just not a priority with Cisco.&lt;/P&gt;
&lt;P&gt;I get the message they would like you to purchase the premium support package like High Touch Technical Support (HTTS) and then have a designated Cisco engineer available to you to do a bug scrub from their perspective of being able to see every bug - internal and public.&lt;/P&gt;</description>
      <pubDate>Wed, 10 Aug 2022 13:48:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4667219#M1092554</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-08-10T13:48:02Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4667270#M1092559</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;Is it safe to assume this will work for migrating the FMCv as well?&amp;nbsp; I just downloaded the 6.6.5 tar and will be installing fresh, importing the backup, then upgrading.&amp;nbsp; I'm not married to the IP address, more concerned with bringing over the rules, objects, settings, and hopefully just changing the management of the 2 1100 devices.&lt;/P&gt;</description>
      <pubDate>Wed, 10 Aug 2022 14:43:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4667270#M1092559</guid>
      <dc:creator>rsharp001</dc:creator>
      <dc:date>2022-08-10T14:43:20Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4667380#M1092576</link>
      <description>&lt;P&gt;FYI &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/290657"&gt;@Massimo Baschieri&lt;/a&gt; 7.0.4 was just posted today.&lt;/P&gt;
&lt;P&gt;Here are the resolved caveats: &lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/70/relnotes/firepower-release-notes-700/bugs.html#Cisco_Generic_Topic.dita_773d382f-8f55-45bb-8511-c76df5419f63" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/70/relnotes/firepower-release-notes-700/bugs.html#Cisco_Generic_Topic.dita_773d382f-8f55-45bb-8511-c76df5419f63&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 10 Aug 2022 18:06:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4667380#M1092576</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-08-10T18:06:34Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Version Suggestions for Upgrade</title>
      <link>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4667381#M1092577</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/279927"&gt;@rsharp001&lt;/a&gt; yes that will work for FMCv&lt;/P&gt;</description>
      <pubDate>Wed, 10 Aug 2022 18:07:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-version-suggestions-for-upgrade/m-p/4667381#M1092577</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-08-10T18:07:11Z</dc:date>
    </item>
  </channel>
</rss>

