<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Firepower 1010 FQDN resolve issue for CDO in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5027502#M1109512</link>
    <description>&lt;P&gt;From your show managers output It looks like you are using FDM to manage? Or did you use FDM to onboard to cdFMC and that is now the manager?&lt;BR /&gt;Also looking at the tshooting above, I would offer the following advice:&lt;BR /&gt;To test MANAGEMENT plane internet access and dns resolution, be it using the management port or the data-plane for management default gateway, use the keyword "system". Without "system", you are testing the data-plane's connectivity.&lt;BR /&gt;ping system 8.8.8.8&lt;BR /&gt;ping system cisco.com&lt;/P&gt;</description>
    <pubDate>Wed, 28 Feb 2024 14:23:31 GMT</pubDate>
    <dc:creator>AHack210</dc:creator>
    <dc:date>2024-02-28T14:23:31Z</dc:date>
    <item>
      <title>Firepower 1010 FQDN resolve issue for CDO</title>
      <link>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000625#M1108173</link>
      <description>&lt;P&gt;Moring/Afternoon/Evening all&lt;BR /&gt;&lt;BR /&gt;Been given a Firepower 1010 to setup and we are going to be using it with Cisco Defense Orchestrator but i'm having issues with the device being seen by CDO.&lt;BR /&gt;&lt;BR /&gt;This is likely going to be something simple but i've been looking at it all week and now just blinded i feel.&lt;BR /&gt;Nothing fancy in the setup... ISP router set static into interface1/1&amp;nbsp;&lt;BR /&gt;will have a printer into one of the interfaces and 2 AP's in the POE interfaces and that is pretty much it.&lt;BR /&gt;&lt;BR /&gt;Testing i've connected an AP and a laptop and both get an IP address from DHCP and access the internet fine but... NTP servers cannot be reached, i've tried default and customs.&lt;BR /&gt;&lt;BR /&gt;Trying to link to the CDO (which is currently trying to claim the device) gives the error "failed to resolve cloud services FQDN. Check network connectivity and DNS config and retry".&lt;BR /&gt;&lt;BR /&gt;Added a few pictures, if you need anything else then let me know and i'll grab it.&lt;BR /&gt;&lt;BR /&gt;I do have a case open with Cisco but with the time difference, i'm trying to see if i can get it resolved as it must be something stupid i'm missing. i did ask the tech if it was anything to do with NAT/Access/Static routing but he said it all was fine...&lt;BR /&gt;&lt;BR /&gt;Thanks for any help with this as its driving me insane.&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jan 2024 09:34:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000625#M1108173</guid>
      <dc:creator>PeyLawro</dc:creator>
      <dc:date>2024-01-19T09:34:01Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower 1010 FQDN resolve issue for CDO</title>
      <link>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000631#M1108175</link>
      <description>&lt;P&gt;&lt;SPAN&gt;failed to resolve cloud services FQDN&amp;lt;&amp;lt;- &lt;BR /&gt;can I see show network&lt;BR /&gt;show manager&amp;nbsp;&lt;BR /&gt;MHM&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jan 2024 09:41:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000631#M1108175</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-01-19T09:41:47Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower 1010 FQDN resolve issue for CDO</title>
      <link>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000666#M1108178</link>
      <description />
      <pubDate>Fri, 19 Jan 2024 10:26:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000666#M1108178</guid>
      <dc:creator>PeyLawro</dc:creator>
      <dc:date>2024-01-19T10:26:58Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower 1010 FQDN resolve issue for CDO</title>
      <link>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000670#M1108179</link>
      <description>&lt;P&gt;can you ping these DNS server appear in show network ?&lt;BR /&gt;MHM&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jan 2024 10:31:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000670#M1108179</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-01-19T10:31:27Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower 1010 FQDN resolve issue for CDO</title>
      <link>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000671#M1108180</link>
      <description>&lt;P&gt;&amp;gt; ping 208.67.222.222&lt;BR /&gt;Please use 'CTRL+C' to cancel/abort...&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 208.67.222.222, timeout is 2 seconds:&lt;BR /&gt;!!!!!&lt;BR /&gt;Success rate is 100 percent (5/5), round-trip min/avg/max = 1/8/10 ms&lt;BR /&gt;&amp;gt; ping 208.67.220.220&lt;BR /&gt;Please use 'CTRL+C' to cancel/abort...&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 208.67.220.220, timeout is 2 seconds:&lt;BR /&gt;!!!!!&lt;BR /&gt;Success rate is 100 percent (5/5), round-trip min/avg/max = 1/8/10 ms&lt;BR /&gt;&amp;gt; ping 2620:119:35::35&lt;BR /&gt;Please use 'CTRL+C' to cancel/abort...&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 2620:119:35::35, timeout is 2 seconds:&lt;BR /&gt;No route to host 2620:119:35::35&lt;/P&gt;&lt;P&gt;seems like can't ping the last one&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jan 2024 10:37:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000671#M1108180</guid>
      <dc:creator>PeyLawro</dc:creator>
      <dc:date>2024-01-19T10:37:10Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower 1010 FQDN resolve issue for CDO</title>
      <link>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000761#M1108181</link>
      <description>&lt;P&gt;Sorted it...&lt;BR /&gt;Under "management interface"&amp;nbsp;&lt;SPAN&gt;Use Unique Gateways for the Management Interface was selected.&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;switched to the other option and now i'm connected up to CDO and greens across the board.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jan 2024 11:48:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000761#M1108181</guid>
      <dc:creator>PeyLawro</dc:creator>
      <dc:date>2024-01-19T11:48:09Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower 1010 FQDN resolve issue for CDO</title>
      <link>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000865#M1108182</link>
      <description>&lt;P&gt;that said... now the devices are not getting internet access now... they get an IP address in the DHCP range. CDO can see and has onboarded the FPR1010.&lt;/P&gt;&lt;P&gt;feel like i'm missing something now with routing or access control&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jan 2024 18:01:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5000865#M1108182</guid>
      <dc:creator>PeyLawro</dc:creator>
      <dc:date>2024-01-19T18:01:30Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower 1010 FQDN resolve issue for CDO</title>
      <link>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5003550#M1108299</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1065752"&gt;@MHM Cisco World&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;any idea's??&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;got the device back onto CDO using 7.2.5 FTD&lt;BR /&gt;&lt;BR /&gt;Devices are getting an ip address but no internet traffic is going through.&lt;BR /&gt;tried changing default action to trust traffic in access control but still no internet traffic.&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jan 2024 12:21:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5003550#M1108299</guid>
      <dc:creator>PeyLawro</dc:creator>
      <dc:date>2024-01-23T12:21:02Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower 1010 FQDN resolve issue for CDO</title>
      <link>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5027502#M1109512</link>
      <description>&lt;P&gt;From your show managers output It looks like you are using FDM to manage? Or did you use FDM to onboard to cdFMC and that is now the manager?&lt;BR /&gt;Also looking at the tshooting above, I would offer the following advice:&lt;BR /&gt;To test MANAGEMENT plane internet access and dns resolution, be it using the management port or the data-plane for management default gateway, use the keyword "system". Without "system", you are testing the data-plane's connectivity.&lt;BR /&gt;ping system 8.8.8.8&lt;BR /&gt;ping system cisco.com&lt;/P&gt;</description>
      <pubDate>Wed, 28 Feb 2024 14:23:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-1010-fqdn-resolve-issue-for-cdo/m-p/5027502#M1109512</guid>
      <dc:creator>AHack210</dc:creator>
      <dc:date>2024-02-28T14:23:31Z</dc:date>
    </item>
  </channel>
</rss>

