<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Questions about network discovery in FTD 7.4.2.2 (build 28) and FMC7.6 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/questions-about-network-discovery-in-ftd-7-4-2-2-build-28-and/m-p/5269103#M1119943</link>
    <description>&lt;P&gt;Hi to all,&lt;/P&gt;&lt;P&gt;i have activated network discovery policy for some vlans that are in the inside network off the FTD.&lt;/P&gt;&lt;P&gt;However when i add these vlans as part of the discovery process i get an FTD warning that you can see in the attached png.&lt;/P&gt;&lt;P&gt;It is like that you can not have routable IPv4s and/or IPv6 as part of the discovery process and only for RFC1918 you do not get warnings.&lt;/P&gt;&lt;P&gt;Why is this warning?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In addition when i add all these vlans as part of the discovery process and then go to Analysis--&amp;gt; Network Map it shows a fake number of hosts 10K hosts (there are not so many hosts) , and in addition it shows for every class C subnet that there are 255 , 256 hosts which is not true.&amp;nbsp; Please refer to the second png to see what i mean.&lt;/P&gt;&lt;P&gt;Any ideas how i can improve Network Discovery for my existing hosts?&amp;nbsp; And get real results?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Ditter.&lt;/P&gt;</description>
    <pubDate>Sun, 09 Mar 2025 11:08:46 GMT</pubDate>
    <dc:creator>Ditter</dc:creator>
    <dc:date>2025-03-09T11:08:46Z</dc:date>
    <item>
      <title>Questions about network discovery in FTD 7.4.2.2 (build 28) and FMC7.6</title>
      <link>https://community.cisco.com/t5/network-security/questions-about-network-discovery-in-ftd-7-4-2-2-build-28-and/m-p/5269103#M1119943</link>
      <description>&lt;P&gt;Hi to all,&lt;/P&gt;&lt;P&gt;i have activated network discovery policy for some vlans that are in the inside network off the FTD.&lt;/P&gt;&lt;P&gt;However when i add these vlans as part of the discovery process i get an FTD warning that you can see in the attached png.&lt;/P&gt;&lt;P&gt;It is like that you can not have routable IPv4s and/or IPv6 as part of the discovery process and only for RFC1918 you do not get warnings.&lt;/P&gt;&lt;P&gt;Why is this warning?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In addition when i add all these vlans as part of the discovery process and then go to Analysis--&amp;gt; Network Map it shows a fake number of hosts 10K hosts (there are not so many hosts) , and in addition it shows for every class C subnet that there are 255 , 256 hosts which is not true.&amp;nbsp; Please refer to the second png to see what i mean.&lt;/P&gt;&lt;P&gt;Any ideas how i can improve Network Discovery for my existing hosts?&amp;nbsp; And get real results?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Ditter.&lt;/P&gt;</description>
      <pubDate>Sun, 09 Mar 2025 11:08:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/questions-about-network-discovery-in-ftd-7-4-2-2-build-28-and/m-p/5269103#M1119943</guid>
      <dc:creator>Ditter</dc:creator>
      <dc:date>2025-03-09T11:08:46Z</dc:date>
    </item>
    <item>
      <title>Re: Questions about network discovery in FTD 7.4.2.2 (build 28) and FM</title>
      <link>https://community.cisco.com/t5/network-security/questions-about-network-discovery-in-ftd-7-4-2-2-build-28-and/m-p/5269969#M1119998</link>
      <description>&lt;P&gt;Are you adding the actual subnets or a supernet? My network map appears correct when discovering the actual subnets inside my firewall (directly attached or otherwise).&lt;/P&gt;</description>
      <pubDate>Tue, 11 Mar 2025 13:31:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/questions-about-network-discovery-in-ftd-7-4-2-2-build-28-and/m-p/5269969#M1119998</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2025-03-11T13:31:11Z</dc:date>
    </item>
    <item>
      <title>Re: Questions about network discovery in FTD 7.4.2.2 (build 28) and FM</title>
      <link>https://community.cisco.com/t5/network-security/questions-about-network-discovery-in-ftd-7-4-2-2-build-28-and/m-p/5269979#M1120000</link>
      <description>&lt;P&gt;Hi Marvin!&lt;/P&gt;&lt;P&gt;No i am adding them as different subnets (that is objects that i have created) .&amp;nbsp; I haven't tried to add them as a supernet.&lt;/P&gt;&lt;P&gt;Strange to get this warning , it is as it not advisable to hav real subnets in your inside zones and only RFC1918 are "acceptable".&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Mar 2025 14:00:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/questions-about-network-discovery-in-ftd-7-4-2-2-build-28-and/m-p/5269979#M1120000</guid>
      <dc:creator>Ditter</dc:creator>
      <dc:date>2025-03-11T14:00:39Z</dc:date>
    </item>
    <item>
      <title>Re: Questions about network discovery in FTD 7.4.2.2 (build 28) and FM</title>
      <link>https://community.cisco.com/t5/network-security/questions-about-network-discovery-in-ftd-7-4-2-2-build-28-and/m-p/5270447#M1120025</link>
      <description>&lt;P&gt;I agree the warning language could be improved. I added a test public /24 in my FMC discovery policy and did not see any hosts added in the network map. Is it possible that you have an NMAP scan configured?&lt;/P&gt;</description>
      <pubDate>Wed, 12 Mar 2025 15:54:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/questions-about-network-discovery-in-ftd-7-4-2-2-build-28-and/m-p/5270447#M1120025</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2025-03-12T15:54:09Z</dc:date>
    </item>
    <item>
      <title>Re: Questions about network discovery in FTD 7.4.2.2 (build 28) and FM</title>
      <link>https://community.cisco.com/t5/network-security/questions-about-network-discovery-in-ftd-7-4-2-2-build-28-and/m-p/5270892#M1120047</link>
      <description>&lt;P&gt;Hi Marvin,&lt;/P&gt;&lt;P&gt;so what i discovered about the "existence" of non existent discovered hosts:&lt;/P&gt;&lt;P&gt;The so called "discovered" hosts were not real&amp;nbsp; because i noticed that the MAC address was not belonging to a specific host but it was the mac address of the upstream GW of the FTD. I really do not know the reason about it.&lt;/P&gt;&lt;P&gt;So i decided to start with a new discovery after purging all discovery events.&amp;nbsp; Now i seem to get the correct results.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks again Marvin,&lt;/P&gt;&lt;P&gt;Ditter&lt;/P&gt;</description>
      <pubDate>Thu, 13 Mar 2025 14:36:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/questions-about-network-discovery-in-ftd-7-4-2-2-build-28-and/m-p/5270892#M1120047</guid>
      <dc:creator>Ditter</dc:creator>
      <dc:date>2025-03-13T14:36:35Z</dc:date>
    </item>
  </channel>
</rss>

