<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: WCCP Router ID Change on Firepower 2110 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146203#M1114365</link>
    <description>&lt;P&gt;Sorry but I dont get full your answer&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Anyway I think it issue of routing not issue of router-id.&lt;/P&gt;
&lt;P&gt;Router-id used inside packet but source use in header and it mandatory to forward packet&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
    <pubDate>Wed, 17 Jul 2024 19:06:18 GMT</pubDate>
    <dc:creator>MHM Cisco World</dc:creator>
    <dc:date>2024-07-17T19:06:18Z</dc:date>
    <item>
      <title>WCCP Router ID Change on Firepower 2110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5145694#M1114332</link>
      <description>&lt;P&gt;On one of our sites, we have a Firepower 2110 configured for WCCP.&amp;nbsp; Previously, it's WCCP Router ID was an unused ethernet port that was configured with an IP address, but not physically connected to anything.&amp;nbsp; It was this way, when I inherited, so I'm not sure of the history. I had been under the impression that a Router ID had to be "up" but that's not really the issue.&amp;nbsp; We enabled interface monitoring on our FMC and it started throwing critical alerts constantly due to the "wccp router id" interface being enabled/configured, but down/down. We disabled the interface, to try and quell the alerts, which brought an end to that IP address being the Router ID for WCCP.&amp;nbsp; I have two questions I haven't been able to answer:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;How was WCCP functioning with a Router ID that was configured to an interface that was down/down?&amp;nbsp; Does the IP address not have to be reachable? Is it possible it was reachable, in the past, but it didn't need to stay that way (i.e. it only needed to be "up" long enough for the system to set it to its WCCP Router ID)?&amp;nbsp;&lt;/LI&gt;&lt;LI&gt;Enabling the interface again (though it's still down/down) did not result in the Router ID changing back.&amp;nbsp; Is there a way to have WCCP use that IP address?&amp;nbsp; I'm not sure of the process for selection.&amp;nbsp; I know it uses the highest IP address, but I don't know if it requires the current interface to be disabled to select again?&amp;nbsp; It either requires a trigger for a new selection, or it does, in fact, require that the interface in question be "up/up" before it can regain its status as WCCP Router ID.&amp;nbsp;&lt;/LI&gt;&lt;/OL&gt;</description>
      <pubDate>Wed, 17 Jul 2024 19:21:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5145694#M1114332</guid>
      <dc:creator>robo764</dc:creator>
      <dc:date>2024-07-17T19:21:04Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Router ID Change on Firepower 2110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5145843#M1114335</link>
      <description>&lt;P&gt;my guess is that the interface was up at some point in time for it to be chosen for router id... It is funny what it worked while in a down state... because it has to be sourced from that interface... i will try to do some testing and report back..&lt;/P&gt;</description>
      <pubDate>Wed, 17 Jul 2024 05:57:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5145843#M1114335</guid>
      <dc:creator>ccieexpert</dc:creator>
      <dc:date>2024-07-17T05:57:29Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Router ID Change on Firepower 2110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146128#M1114356</link>
      <description>&lt;P&gt;As a ridiculous/maddening coincidence, the tunnel interface (that was just recently selected as the new WCCP Router I went down last night.&amp;nbsp; As a result, the WCCP Router ID reverted back to the down/down ethernet interface.&amp;nbsp; So the firepower is now using an interface that was *definitely* down/down, when it was selected, as the Router ID.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 17 Jul 2024 15:25:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146128#M1114356</guid>
      <dc:creator>robo764</dc:creator>
      <dc:date>2024-07-17T15:25:33Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Router ID Change on Firepower 2110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146146#M1114358</link>
      <description>&lt;P&gt;Route ID is different that packet source IP&lt;/P&gt;
&lt;P&gt;FW use router ID it up.or down&amp;nbsp;&lt;/P&gt;
&lt;P&gt;But FW always use UP IP as packet source&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Wed, 17 Jul 2024 15:49:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146146#M1114358</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-07-17T15:49:48Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Router ID Change on Firepower 2110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146202#M1114364</link>
      <description>&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/special/wccp/asa-wccp.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/special/wccp/asa-wccp.html&lt;/A&gt;&lt;/P&gt;
&lt;UL class="ul" style="margin: 0px; padding: 0px 40px; border: 0px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-variant-numeric: inherit; font-variant-east-asian: inherit; font-variant-alternates: inherit; font-variant-position: inherit; font-weight: 300; font-stretch: inherit; font-size: 14px; line-height: inherit; font-family: CiscoSans, Arial, sans-serif; font-optical-sizing: inherit; font-kerning: inherit; font-feature-settings: inherit; font-variation-settings: inherit; vertical-align: baseline; list-style: unset; overflow: visible; position: relative; color: #58585b; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; white-space: normal; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"&gt;
&lt;LI class="li" style="margin: 0px 0px 6px; padding: 0px; border: 0px; font-style: inherit; font-variant: inherit; font-weight: 400; font-stretch: inherit; font-size: 1.4rem; line-height: 1.25; font-family: CiscoSans, Arial, sans-serif; font-optical-sizing: inherit; font-kerning: inherit; font-feature-settings: inherit; font-variation-settings: inherit; vertical-align: baseline; color: #58585b; overflow: initial;"&gt;
&lt;P class="p" style="margin: 0px 0px 0.5em; padding: 0px; border: 0px; font-style: inherit; font-variant: inherit; font-weight: 400; font-stretch: inherit; font-size: 14px; line-height: 1.25; font-family: CiscoSans, Arial, sans-serif; font-optical-sizing: inherit; font-kerning: inherit; font-feature-settings: inherit; font-variation-settings: inherit; vertical-align: baseline; color: #58585b; overflow: visible;"&gt;The ASA selects the highest IP address configured on any interface as the WCCP router ID. This address is used to establish a GRE tunnel with the device. When the ASA redirects packets to the WCCP-enabled device, &lt;STRONG&gt;the ASA sources the redirect from the router ID IP address (even if it is sourced out a different interface) and encapsulates the packet in a GRE header&lt;/STRONG&gt;. For WCCP to work, the&lt;STRONG&gt; interface whose IP address is chosen as the router ID must be in the UP state and there must be a route to the device&lt;/STRONG&gt;.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Wed, 17 Jul 2024 18:54:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146202#M1114364</guid>
      <dc:creator>ccieexpert</dc:creator>
      <dc:date>2024-07-17T18:54:56Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Router ID Change on Firepower 2110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146203#M1114365</link>
      <description>&lt;P&gt;Sorry but I dont get full your answer&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Anyway I think it issue of routing not issue of router-id.&lt;/P&gt;
&lt;P&gt;Router-id used inside packet but source use in header and it mandatory to forward packet&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Wed, 17 Jul 2024 19:06:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146203#M1114365</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-07-17T19:06:18Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Router ID Change on Firepower 2110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146204#M1114366</link>
      <description>&lt;P&gt;"&lt;SPAN&gt;For WCCP to work, the&lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;interface whose IP address is chosen as the router ID must be in the UP state and there must be a route to the device&lt;/STRONG&gt;&lt;SPAN&gt;."&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Yeah, this is what was throwing me off. I couldn't find a firepower-specific document that talked about WCCP like the ASA doc, so I had thought the behavior was the same.&amp;nbsp; Evidence would lead me to believe that's not true, however.&amp;nbsp; There is, in fact, routing to the device/Router ID, but only due to it being an interface on the same device (firepower) and subnet. It's obviously not "reachable" due to it being down/down.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 17 Jul 2024 19:09:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146204#M1114366</guid>
      <dc:creator>robo764</dc:creator>
      <dc:date>2024-07-17T19:09:35Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Router ID Change on Firepower 2110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146560#M1114381</link>
      <description>&lt;P&gt;It's highly likely that interface need not be in the "up"state to use its IP address as the source of GRE frames, although official documentation and CSCvp67215 tells us otherwise. The fact that RID is unconfigurable has always been a pain. Also, beware of CSCwh68068 on FTD.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jul 2024 08:50:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146560#M1114381</guid>
      <dc:creator>tvotna</dc:creator>
      <dc:date>2024-07-18T08:50:08Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP Router ID Change on Firepower 2110</title>
      <link>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146635#M1114386</link>
      <description>&lt;P&gt;&lt;A href="https://integratingit.wordpress.com/2022/02/25/wsa-transparent-proxy-using-wccp/" target="_blank"&gt;https://integratingit.wordpress.com/2022/02/25/wsa-transparent-proxy-using-wccp/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;check this&amp;nbsp;&lt;BR /&gt;MHM&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jul 2024 11:15:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-router-id-change-on-firepower-2110/m-p/5146635#M1114386</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-07-18T11:15:11Z</dc:date>
    </item>
  </channel>
</rss>

