<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FMC migration questions in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-migration-questions/m-p/4893858#M1103022</link>
    <description>&lt;P&gt;Hi Cisco Firepower experts,&lt;/P&gt;
&lt;P&gt;I am preparing a FMC migration from old 1000 model to 1600 model. Got 2 questions.&lt;/P&gt;
&lt;P&gt;1. Can the target FMC use a different MGMT IP other then the existing one?&lt;/P&gt;
&lt;P&gt;2, The FMC is sending logs to SIEM, during the cutover, would the event log be lost for a few minutes? or the FTD will keep the log locally, and once the FTD re-establishes communication with FMC, the logs will then be sent out, so technically&amp;nbsp; no log will be missed on the SIME side?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Thu, 27 Jul 2023 15:20:26 GMT</pubDate>
    <dc:creator>antonioyan99</dc:creator>
    <dc:date>2023-07-27T15:20:26Z</dc:date>
    <item>
      <title>FMC migration questions</title>
      <link>https://community.cisco.com/t5/network-security/fmc-migration-questions/m-p/4893858#M1103022</link>
      <description>&lt;P&gt;Hi Cisco Firepower experts,&lt;/P&gt;
&lt;P&gt;I am preparing a FMC migration from old 1000 model to 1600 model. Got 2 questions.&lt;/P&gt;
&lt;P&gt;1. Can the target FMC use a different MGMT IP other then the existing one?&lt;/P&gt;
&lt;P&gt;2, The FMC is sending logs to SIEM, during the cutover, would the event log be lost for a few minutes? or the FTD will keep the log locally, and once the FTD re-establishes communication with FMC, the logs will then be sent out, so technically&amp;nbsp; no log will be missed on the SIME side?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jul 2023 15:20:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-migration-questions/m-p/4893858#M1103022</guid>
      <dc:creator>antonioyan99</dc:creator>
      <dc:date>2023-07-27T15:20:26Z</dc:date>
    </item>
    <item>
      <title>Re: FMC migration questions</title>
      <link>https://community.cisco.com/t5/network-security/fmc-migration-questions/m-p/4893974#M1103032</link>
      <description>&lt;P&gt;1. Technically yes, but you don't want to go there since it makes the work 10x as much. Model migration is designed to keep the same IP on the new FMC.&lt;/P&gt;
&lt;P&gt;2. FTD will retain events locally in queue if they are destined for FMC. However syslog events from FTD devices are generally sent out directly via UDP and not queued. Syslog from FMC based on incoming FTD events follow that model. eStreamer is tcp based and will drain the queue once the events start coming in again.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jul 2023 17:37:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-migration-questions/m-p/4893974#M1103032</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2023-07-27T17:37:01Z</dc:date>
    </item>
  </channel>
</rss>

