<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cant PING FQDN from CLISH FTD in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cant-ping-fqdn-from-clish-ftd/m-p/4686297#M1093346</link>
    <description>&lt;P&gt;never tried that option, since most of the deployment in same DC.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/162366iBFA173618563905B/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;check some Limitaton here :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/215540-configure-verify-and-troubleshoot-firep.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/215540-configure-verify-and-troubleshoot-firep.html&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 13 Sep 2022 15:30:01 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2022-09-13T15:30:01Z</dc:date>
    <item>
      <title>Cant PING FQDN from CLISH FTD</title>
      <link>https://community.cisco.com/t5/network-security/cant-ping-fqdn-from-clish-ftd/m-p/4686290#M1093345</link>
      <description>&lt;P&gt;I'd like to register FMC manager by FQDN but from Clish mode on FTD when I do show network command I have 2 different sections showing my DNS config. I can ping outside public IP addresses so I know routing is fine but I cannot ping or resolve external names to IP addresses. I am hoping if I can get name resolution working that I can register my FTD's to the FMC using FQDN rather than Public IP address. Anyone follow me here and have any thoughts as I gotta get this FTD in place tomorrow and I'm worried that if I register through the data interface using Public IP of firewall in front of the FMC that if they ever change ISP's and that public IP changes that all my tail site FTD's will break meaning I'll no longer be able to deploy changes etc. Please help here&lt;/P&gt;&lt;P&gt;Also when I registered teh FTD over the data interface I was expecting to see the WAN IP of the FTD established 8305 to public IP address of the manager but it does not. It show like a private IP established to it as follows. What is up with that???&lt;BR /&gt;tcp 0 58 &lt;STRONG&gt;169.254.1.3&lt;/STRONG&gt;:8305 FMCMANAGERPUBLICIP:51043 ESTABLISHED&lt;BR /&gt;tcp 0 0 &lt;STRONG&gt;169.254.1.3&lt;/STRONG&gt;:8305 FMCMANAGERPUBLICIP:35467 ESTABLISHED&lt;/P&gt;&lt;P&gt;===============[ System Information ]===============&lt;BR /&gt;Hostname : TT-FTD1010-3&lt;BR /&gt;DNS Servers : 208.67.222.222&lt;BR /&gt;208.67.220.220&lt;BR /&gt;2620:119:35::35&lt;BR /&gt;DNS from router : enabled&lt;BR /&gt;Management port : 8305&lt;BR /&gt;IPv4 Default route&lt;BR /&gt;Gateway : 192.168.3.1&lt;BR /&gt;Netmask : 0.0.0.0&lt;/P&gt;&lt;P&gt;======[ System Information - Data Interfaces ]======&lt;BR /&gt;DNS Servers : 208.67.222.123&lt;BR /&gt;208.67.220.123&lt;BR /&gt;Interfaces : Ethernet1/1&lt;/P&gt;</description>
      <pubDate>Tue, 13 Sep 2022 15:27:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cant-ping-fqdn-from-clish-ftd/m-p/4686290#M1093345</guid>
      <dc:creator>keithcclark71</dc:creator>
      <dc:date>2022-09-13T15:27:19Z</dc:date>
    </item>
    <item>
      <title>Re: Cant PING FQDN from CLISH FTD</title>
      <link>https://community.cisco.com/t5/network-security/cant-ping-fqdn-from-clish-ftd/m-p/4686297#M1093346</link>
      <description>&lt;P&gt;never tried that option, since most of the deployment in same DC.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/162366iBFA173618563905B/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;check some Limitaton here :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/215540-configure-verify-and-troubleshoot-firep.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/215540-configure-verify-and-troubleshoot-firep.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 13 Sep 2022 15:30:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cant-ping-fqdn-from-clish-ftd/m-p/4686297#M1093346</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2022-09-13T15:30:01Z</dc:date>
    </item>
    <item>
      <title>Re: Cant PING FQDN from CLISH FTD</title>
      <link>https://community.cisco.com/t5/network-security/cant-ping-fqdn-from-clish-ftd/m-p/4686359#M1093347</link>
      <description>&lt;P&gt;If ip address of the FMC remote management IP changes can one at least change the manager IP address on the FTD rather than having to reregister it using the new IP address of the FMC ?&lt;/P&gt;</description>
      <pubDate>Tue, 13 Sep 2022 18:31:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cant-ping-fqdn-from-clish-ftd/m-p/4686359#M1093347</guid>
      <dc:creator>keithcclark71</dc:creator>
      <dc:date>2022-09-13T18:31:16Z</dc:date>
    </item>
    <item>
      <title>Re: Cant PING FQDN from CLISH FTD</title>
      <link>https://community.cisco.com/t5/network-security/cant-ping-fqdn-from-clish-ftd/m-p/4687055#M1093361</link>
      <description>&lt;P&gt;In general condition, we expect Management to be fixed not to change dynamically, so this need to consider when you deploying, if not config push from FMC can not reach FTD, if the IP changed.&lt;/P&gt;
&lt;P&gt;for now i belive you need to rgister if the FTD IP changed i guess.&lt;/P&gt;</description>
      <pubDate>Wed, 14 Sep 2022 11:24:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cant-ping-fqdn-from-clish-ftd/m-p/4687055#M1093361</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2022-09-14T11:24:44Z</dc:date>
    </item>
  </channel>
</rss>

