<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: firepower crontab in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4958122#M1105769</link>
    <description>&lt;P&gt;check below thread can help you :&amp;nbsp; (if GUI not helpfull for you ?)&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/security-knowledge-base/firepower-device-manager-fdm-backup-amp-restore-using-rest-api/ta-p/4178793" target="_blank"&gt;https://community.cisco.com/t5/security-knowledge-base/firepower-device-manager-fdm-backup-amp-restore-using-rest-api/ta-p/4178793&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 13 Nov 2023 10:42:38 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2023-11-13T10:42:38Z</dc:date>
    <item>
      <title>firepower crontab</title>
      <link>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4957713#M1105760</link>
      <description>&lt;P&gt;hi all,&lt;/P&gt;
&lt;P&gt;I am trying to make a firepower using FDM automatically backup its config files to our backup server.&lt;/P&gt;
&lt;P&gt;I have accessed it using the root shell, and made the script and tested it works as expected and it does. However when i put it into /etc/cron.daily it does not run.&lt;/P&gt;
&lt;P&gt;Originally, i tried editing the crontab. but it was a jumbled mess (assuming by design) so went looking and found cron.daily.&lt;/P&gt;
&lt;P&gt;I understand that this is probably "not supported" but lets ignore that, and see if there is a way that i can get this automated sync happening. Im amazed that FDM does not support remote backup in the base product.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Im keen to see what we can come up with.&lt;/P&gt;
&lt;P&gt;Many thanks&lt;/P&gt;
&lt;P&gt;Jason&lt;/P&gt;</description>
      <pubDate>Mon, 13 Nov 2023 04:42:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4957713#M1105760</guid>
      <dc:creator>jbates5873</dc:creator>
      <dc:date>2023-11-13T04:42:36Z</dc:date>
    </item>
    <item>
      <title>Re: firepower crontab</title>
      <link>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4957919#M1105763</link>
      <description>&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/660/fdm/fptd-fdm-config-guide-660/fptd-fdm-mgmt.html#id_14709" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/660/fdm/fptd-fdm-config-guide-660/fptd-fdm-mgmt.html#id_14709&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;check this you can from FDM backup not need via CLI&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Thanks A Lot &lt;BR /&gt;MHM&lt;/P&gt;</description>
      <pubDate>Mon, 13 Nov 2023 08:41:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4957919#M1105763</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-11-13T08:41:17Z</dc:date>
    </item>
    <item>
      <title>Re: firepower crontab</title>
      <link>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4958122#M1105769</link>
      <description>&lt;P&gt;check below thread can help you :&amp;nbsp; (if GUI not helpfull for you ?)&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/security-knowledge-base/firepower-device-manager-fdm-backup-amp-restore-using-rest-api/ta-p/4178793" target="_blank"&gt;https://community.cisco.com/t5/security-knowledge-base/firepower-device-manager-fdm-backup-amp-restore-using-rest-api/ta-p/4178793&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 13 Nov 2023 10:42:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4958122#M1105769</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2023-11-13T10:42:38Z</dc:date>
    </item>
    <item>
      <title>Re: firepower crontab</title>
      <link>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4958131#M1105772</link>
      <description>&lt;P&gt;i have the backups running on a schedule as needed. My issue is getting them from the FTD to our backup server using SCP or some other method.&lt;/P&gt;
&lt;P&gt;I have a script in /etc/cron.daily that runs the command to sync it, and that works as expected.&lt;/P&gt;
&lt;P&gt;My issue is scheduling that script to run daily. Having it in the cron.daily folder isnt working.&lt;/P&gt;</description>
      <pubDate>Mon, 13 Nov 2023 10:47:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4958131#M1105772</guid>
      <dc:creator>jbates5873</dc:creator>
      <dc:date>2023-11-13T10:47:08Z</dc:date>
    </item>
    <item>
      <title>Re: firepower crontab</title>
      <link>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4958135#M1105773</link>
      <description>&lt;P&gt;i came across this a while ago, but that only makes the backup. It doesnt allow extraction.&lt;/P&gt;
&lt;P&gt;that script (as far as i can tell) runs the backup on the box, and you need to retrieve it.&lt;/P&gt;
&lt;P&gt;Im wanting the FTD to sync its backup folder to our backup server automatically.&lt;/P&gt;</description>
      <pubDate>Mon, 13 Nov 2023 10:48:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4958135#M1105773</guid>
      <dc:creator>jbates5873</dc:creator>
      <dc:date>2023-11-13T10:48:52Z</dc:date>
    </item>
    <item>
      <title>Re: firepower crontab</title>
      <link>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4958138#M1105775</link>
      <description>&lt;P&gt;i have not tried command level&lt;/P&gt;
&lt;P&gt;Try if you can use "crontab -e" and add scheduled.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 13 Nov 2023 10:50:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/4958138#M1105775</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2023-11-13T10:50:34Z</dc:date>
    </item>
    <item>
      <title>Re: firepower crontab</title>
      <link>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/5003015#M1108279</link>
      <description>&lt;P&gt;OK, just to check back onto this, as i have resolved my own issue.&lt;/P&gt;
&lt;P&gt;The below will allow you to configure an external target that you can push your FDM backups to in case the unit dies and you need to recover it.&lt;/P&gt;
&lt;P&gt;Whats the point of having the backup stored on the box thats just died? Poor effort Cisco.&lt;/P&gt;
&lt;P&gt;You will need to have generated a RSA SSH key pair already, and have the public key loaded into your target server.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;SSH into the firepower unit and access expert mode.&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;ssh &amp;lt;firepower_user&amp;gt;@&amp;lt;firepower_ip&amp;gt;
expert&lt;/LI-CODE&gt;
&lt;P&gt;Create the SSH Private Key file and set its permissions to the required level.&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;vi /ngfw/home/admin/.ssh/id_rsa
&amp;lt;Insert Mode&amp;gt;
&amp;lt;Paste Private key into terminal&amp;gt;
&amp;lt;Escape&amp;gt;
:wq
chmod 400 /ngfw/home/admin/.ssh/id_rsa&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;enter sudo mode in Firepower&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;sudo su&lt;/LI-CODE&gt;
&lt;P&gt;Create the backup script that is called daily and also set it to be executable&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;vi /ngfw/etc/cron.daily/1_firepower_backup
&amp;lt;Insert Mode&amp;gt;
&amp;lt;Paste below command into terminal&amp;gt;
#!/bin/sh
rsync --archive --progress --verbose --rsh 'ssh -oPort=22 -i /ngfw/home/admin/.ssh/id_rsa' /var/sf/backup/ &amp;lt;backup_server_username&amp;gt;@&amp;lt;backup_server_ip&amp;gt;:&amp;lt;backup_server_target_location&amp;gt;
&amp;lt;Escape&amp;gt;
:wq
chmod +x /ngfw/etc/cron.daily/1_firepower_backup&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To see the schedule that your cron.daily runs at, you can execute&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;cat /ngfw/etc/crontab&lt;/LI-CODE&gt;
&lt;P&gt;It will come back with the cron schedule&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;SHELL=/bin/bash
PATH=/sbin:/bin:/usr/sbin:/usr/bin
MAILTO=""
HOME=/

# run-parts
#m    h  dom mon dow user       command
*/5   *  *   *   *   root       run-parts /ngfw/etc/cron.5min
01    *  *   *   *   root       run-parts /ngfw/etc/cron.hourly
02    4  *   *   *   root       run-parts /ngfw/etc/cron.daily
22    4  *   *   0   root       run-parts /ngfw/etc/cron.weekly
42    4  1   *   *   root       run-parts /ngfw/etc/cron.monthly&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;And thats it. That should have your firepower backing up to an external target daily.&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jan 2024 04:48:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-crontab/m-p/5003015#M1108279</guid>
      <dc:creator>jbates5873</dc:creator>
      <dc:date>2024-01-23T04:48:46Z</dc:date>
    </item>
  </channel>
</rss>

