<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Interfaces on Secondary Firewall &amp;quot;Not receiving packets&amp;quot; in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812808#M1099436</link>
    <description>&lt;P&gt;I expected different behavior since the FMC is aware of the a/p HA and again why is it only complaining about 4 out of 9 sub-interfaces. Might be a bug then?&lt;/P&gt;</description>
    <pubDate>Wed, 12 Apr 2023 12:40:23 GMT</pubDate>
    <dc:creator>adamgerber</dc:creator>
    <dc:date>2023-04-12T12:40:23Z</dc:date>
    <item>
      <title>Interfaces on Secondary Firewall "Not receiving packets"</title>
      <link>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812718#M1099431</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;I have x2 4115's in Active Passive HA.&lt;/P&gt;
&lt;P&gt;On my FMC, I'm getting critical health alerts for the secondary/passive firewall "not receiving any packets" on &lt;STRONG&gt;some&lt;/STRONG&gt; of its subinterfaces. Is this normal or a bug? Or an issue with my health monitoring policy? I would like to eliminate these alerts. I have another HA pair of 1140's on the same FMC and don't get this issue. Weird how it's only complaining about a few random subinterfaces?&lt;/P&gt;
&lt;P&gt;Any help would be appreciated.&lt;/P&gt;
&lt;P&gt;KR,&lt;BR /&gt;Adam&lt;/P&gt;</description>
      <pubDate>Wed, 12 Apr 2023 10:59:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812718#M1099431</guid>
      <dc:creator>adamgerber</dc:creator>
      <dc:date>2023-04-12T10:59:43Z</dc:date>
    </item>
    <item>
      <title>Re: Interfaces on Secondary Firewall "Not receiving packets"</title>
      <link>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812782#M1099432</link>
      <description>&lt;P&gt;&lt;A href="https://community.cisco.com/t5/network-security/fmc-interface-dataplaneinterface0-is-not-receiving-any-packets/td-p/4691127" target="_blank"&gt;FMC Interface 'DataplaneInterface0' is not receiving any packets - Cisco Community&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Apr 2023 12:15:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812782#M1099432</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-12T12:15:30Z</dc:date>
    </item>
    <item>
      <title>Re: Interfaces on Secondary Firewall "Not receiving packets"</title>
      <link>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812798#M1099433</link>
      <description>&lt;P&gt;Hi - that thread is regarding ASA's with separate SFR modules. I am dealing with x2 FTD's in an HA pair. I dont want to disable interface monitoring for the HA Pair.&lt;/P&gt;</description>
      <pubDate>Wed, 12 Apr 2023 12:32:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812798#M1099433</guid>
      <dc:creator>adamgerber</dc:creator>
      <dc:date>2023-04-12T12:32:40Z</dc:date>
    </item>
    <item>
      <title>Re: Interfaces on Secondary Firewall "Not receiving packets"</title>
      <link>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812805#M1099435</link>
      <description>&lt;P&gt;Yes friend I know the FW platform is different but in end the FMC is same.&lt;BR /&gt;this behave I think is similar.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Apr 2023 12:36:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812805#M1099435</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-12T12:36:00Z</dc:date>
    </item>
    <item>
      <title>Re: Interfaces on Secondary Firewall "Not receiving packets"</title>
      <link>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812808#M1099436</link>
      <description>&lt;P&gt;I expected different behavior since the FMC is aware of the a/p HA and again why is it only complaining about 4 out of 9 sub-interfaces. Might be a bug then?&lt;/P&gt;</description>
      <pubDate>Wed, 12 Apr 2023 12:40:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812808#M1099436</guid>
      <dc:creator>adamgerber</dc:creator>
      <dc:date>2023-04-12T12:40:23Z</dc:date>
    </item>
    <item>
      <title>Re: Interfaces on Secondary Firewall "Not receiving packets"</title>
      <link>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812811#M1099437</link>
      <description>&lt;P&gt;4 of 9 subinterface &amp;lt;&amp;lt;- are all are config as HA monitor ? if all then&amp;nbsp; think contact TAC it can be bug and there is solution or workaround for it.&lt;/P&gt;</description>
      <pubDate>Wed, 12 Apr 2023 12:42:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812811#M1099437</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-12T12:42:55Z</dc:date>
    </item>
    <item>
      <title>Re: Interfaces on Secondary Firewall "Not receiving packets"</title>
      <link>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812817#M1099438</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/447604"&gt;@adamgerber&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="qtr-margin-top "&gt;&lt;STRONG&gt;Symptom:&lt;/STRONG&gt; Critical health alerts for Interface Status stating that interfaces are not receiving any packets are seen on the FMC for the standby FTD, which is not supposed to be processing traffic, so this is a normal and expected behavior. &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="qtr-margin-top "&gt;&lt;STRONG&gt;Conditions:&lt;/STRONG&gt; FTD deployed in High Availability. &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="qtr-margin-top "&gt;&lt;STRONG&gt;Workaround:&lt;/STRONG&gt; Blacklist the health alerts for Interface Status.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://bst.cisco.com/bugsearch/bug/CSCvk05446" target="_blank" rel="noopener"&gt;https://bst.cisco.com/bugsearch/bug/CSCvk05446&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://bst.cisco.com/bugsearch/bug/CSCvb36840" target="_blank"&gt;https://bst.cisco.com/bugsearch/bug/CSCvb36840&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Apr 2023 12:54:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4812817#M1099438</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-12T12:54:14Z</dc:date>
    </item>
    <item>
      <title>Re: Interfaces on Secondary Firewall "Not receiving packets"</title>
      <link>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4821288#M1099855</link>
      <description>&lt;P&gt;Hi - Yes they are enabled with failover monitoring.&lt;/P&gt;</description>
      <pubDate>Tue, 25 Apr 2023 12:23:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/4821288#M1099855</guid>
      <dc:creator>adamgerber</dc:creator>
      <dc:date>2023-04-25T12:23:53Z</dc:date>
    </item>
    <item>
      <title>Re: Interfaces on Secondary Firewall "Not receiving packets"</title>
      <link>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/5201276#M1116206</link>
      <description>&lt;P&gt;Hi all. Fixed by adding standby IP addresses to interfaces.&lt;/P&gt;</description>
      <pubDate>Mon, 30 Sep 2024 20:46:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/5201276#M1116206</guid>
      <dc:creator>adamgerber</dc:creator>
      <dc:date>2024-09-30T20:46:53Z</dc:date>
    </item>
    <item>
      <title>Re: Interfaces on Secondary Firewall "Not receiving packets"</title>
      <link>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/5201846#M1116225</link>
      <description>&lt;P&gt;Enabling interface monitoring for failover with the inclusion of standby addresses is the best solution.&lt;/P&gt;
&lt;P&gt;When that's not possible (e.g., HA pair sharing a /30 WAN address), newer versions of FMC will allow you to blacklist just one member of the HA pair for only some interfaces while continuing to monitor the interface on the Primary (and normally active) member..&lt;/P&gt;</description>
      <pubDate>Tue, 01 Oct 2024 15:06:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/interfaces-on-secondary-firewall-quot-not-receiving-packets-quot/m-p/5201846#M1116225</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2024-10-01T15:06:23Z</dc:date>
    </item>
  </channel>
</rss>

