<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: No enable command ASA 5508-x in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3191423#M415106</link>
    <description>&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;If for some reason you end up like me and something isnt quite right with you new ASA 5508-x with FTD and you need to get back to the begininning.&amp;nbsp; I finally found some help and answers on the very bottom under "&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/621/fdm/fptd-fdm-config-guide-621/fptd-fdm-mgmt.html" target="_blank"&gt;Uncommon Management Tasks&lt;/A&gt;". Then there was a little bit of extra to finish it up.&amp;nbsp; I hope this helps some one and may you never have to use it.&lt;BR /&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Procedure&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Use an SSH or CLI in to the box.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 1 &lt;STRONG&gt;&amp;gt; expert&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; at the bash prompt sudo and set the time, date and timezone.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 2&amp;nbsp; Delete any managers.&amp;nbsp;&amp;nbsp; &lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;STRONG&gt;&amp;gt; configure manager delete&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; If you enabled any feature licenses, you must disable them in&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Firepower Device Manager before deleting the local manager.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Otherwise, those licenses remain assigned to the device in Cisco&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Smart Software Manager.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Do you want to continue[yes/no] yes&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Deleting task list&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Manager successfully deleted.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 3&amp;nbsp; &lt;STRONG&gt;&amp;gt; show managers&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; No managers configured.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 4&amp;nbsp; &lt;STRONG&gt;&amp;gt; Configure manager local&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 5&amp;nbsp; &lt;STRONG&gt;&amp;gt; show managers&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Managed locally.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;Step 6 Set your system to get a DHCP ip&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;You can now use a web browser to open the Firepower Management Center&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;By clearing the configuration, you will be prompted to complete the device setup wizard.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;If you still cant log into the web interface&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 1&amp;nbsp; &lt;STRONG&gt;&amp;gt; show network&amp;nbsp;&lt;/STRONG&gt;&lt;BR /&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;You should have the default DHCP addresses in the Gateway and for IPv4, or at least in the subnet.&amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;If not then reset everything to DHCP&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 2&amp;nbsp; &lt;STRONG&gt;&amp;gt; configure network ipv4 and/or ipv6 dhcp&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;This may take some time to run.&amp;nbsp; Once this is done your management computer should get a DHCP ip.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;The addresses in the Gateway and for IPv4 should go back to DHCP.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Check you system to make sure it got a DHCP address.&amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; If not, set it to DHCP&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Once everything is DHCP give it a minute to shuffle and arp.&amp;nbsp; It took me 5 mins before I could log into the web portal.&amp;nbsp; I was gettin ready to start all over again.&amp;nbsp; And then like magic it all worked.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;LAST THING TO DO!&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;One at a time, write you configs on each device and reboot after writing.&amp;nbsp; Patientce is a virtue.&amp;nbsp; It takes&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;about 5 mins to get back to a normal state and talking to each other.&amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 29 Sep 2017 01:06:30 GMT</pubDate>
    <dc:creator>mawg64</dc:creator>
    <dc:date>2017-09-29T01:06:30Z</dc:date>
    <item>
      <title>No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188678#M415087</link>
      <description>&lt;P&gt;I got a new 5508-x at work.&amp;nbsp; Out of the box went through the defaults via wizard, changing the internal and management ip (already in use somewhere else).&amp;nbsp; Rebooted as instructed, everything looked good.&amp;nbsp; The prompt I get is a &amp;gt; symbol but I'm not in a normal access prompt, no enable command, no access to standard commands, config, etc.&amp;nbsp; I can look at thing but cant change anything I need to like a no shut, config etc.&amp;nbsp; I can get to a bash shell even tried a reboot once sudo'd via linux.&amp;nbsp;&amp;nbsp; Running back through the wizard, not an option.&amp;nbsp; Reset button, nope.&amp;nbsp; No option to start over, defintely no "do-over" option.&amp;nbsp; I can see the status of the interfaces, not via normal "sho ip int br", using the provided show network command.&amp;nbsp; They are all shutdown.&amp;nbsp; Just a nice blinky "&amp;gt;".&amp;nbsp; Suggestions?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 14:21:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188678#M415087</guid>
      <dc:creator>mawg64</dc:creator>
      <dc:date>2020-02-21T14:21:27Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188690#M415088</link>
      <description>Hi&lt;BR /&gt;&lt;BR /&gt;Did you tried doing login command at the prompt and type your credentials (user/password) to access the enable privilege 15 mode ?&lt;BR /&gt;&lt;BR /&gt;Thanks</description>
      <pubDate>Sun, 24 Sep 2017 19:44:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188690#M415088</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2017-09-24T19:44:49Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188707#M415089</link>
      <description>&lt;P&gt;Based on your sayings, I would assume that you are running an FTD image where the CLI is quite different to a traditional ASA. Is there any output for "show version" or can you show what is given by typing the question-mark?&lt;/P&gt;</description>
      <pubDate>Sun, 24 Sep 2017 21:02:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188707#M415089</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2017-09-24T21:02:26Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188736#M415090</link>
      <description>&lt;P&gt;I do have to login with username and password.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2017 01:53:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188736#M415090</guid>
      <dc:creator>mawg64</dc:creator>
      <dc:date>2017-09-25T01:53:07Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188737#M415091</link>
      <description>&lt;P&gt;I can get a menu of options with the ?.&amp;nbsp; If I'm not mistaken I can get a show version option.&amp;nbsp; Not at work right now to check, but I'm reasonably sure of that, since it was how I also got to see the interfaces/network.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2017 01:56:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188737#M415091</guid>
      <dc:creator>mawg64</dc:creator>
      <dc:date>2017-09-25T01:56:08Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188738#M415092</link>
      <description>Yeah send the output of show version. &lt;BR /&gt;Like Karsten said, your certainly running ftd image and you don't have three save cli commands as you have with asa</description>
      <pubDate>Mon, 25 Sep 2017 01:57:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188738#M415092</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2017-09-25T01:57:24Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188740#M415093</link>
      <description>Ok I'll ASAP Monday morning.&lt;BR /&gt;&lt;BR /&gt;Thanks&lt;BR /&gt;</description>
      <pubDate>Mon, 25 Sep 2017 02:00:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188740#M415093</guid>
      <dc:creator>mawg64</dc:creator>
      <dc:date>2017-09-25T02:00:34Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188925#M415094</link>
      <description>&lt;P&gt;Your ASA definitely has the Firepower Threat Defense (FTD) image. FTD does not allow configuration via the cli apart from the minimal bits required to setup management access. Thus there is no enable command.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You need to use either Firepower Device Manager (FDM = on-box GUI) or Firepower Management Center (FMC = remote management server). FDM can be accessed by browsing via https to the configured managment address.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2017 10:49:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188925#M415094</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-09-25T10:49:00Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188968#M415095</link>
      <description>&lt;P&gt;I would do that if the interfaces were not in a no shut state. If there is a&lt;BR /&gt;way to do that via the FTD or linux I would have no problem. Part of&lt;BR /&gt;problem is there is **bleep** little documentation.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2017 12:19:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188968#M415095</guid>
      <dc:creator>mawg64</dc:creator>
      <dc:date>2017-09-25T12:19:12Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188978#M415096</link>
      <description>&lt;P&gt;You manage an FTD device via the physical management interface (for FMC) or via inside or managemnt (for FDM).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The following quick start guide may be useful:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/quick_start/5508X/ftd-fdm-5508x-qsg.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/quick_start/5508X/ftd-fdm-5508x-qsg.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2017 13:08:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3188978#M415096</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-09-25T13:08:04Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189020#M415097</link>
      <description>&lt;P&gt;I have tried that, using both the default ip and the one I set it to.&amp;nbsp; Which is what it displays&amp;nbsp;using "show network" command.&amp;nbsp; Unfortunately, between windows and the ASA someone is telling my laptop that there is no cable plugged in.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2017 13:05:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189020#M415097</guid>
      <dc:creator>mawg64</dc:creator>
      <dc:date>2017-09-25T13:05:28Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189023#M415098</link>
      <description>&lt;P&gt;When you plug into Management 1/1 do you get link light?&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2017 13:08:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189023#M415098</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-09-25T13:08:37Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189030#M415099</link>
      <description>&lt;P&gt;No link light.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2017 13:12:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189030#M415099</guid>
      <dc:creator>mawg64</dc:creator>
      <dc:date>2017-09-25T13:12:56Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189095#M415100</link>
      <description>&lt;P&gt;That's odd. I've done a dozen or so&amp;nbsp;FTD configurations and have never seen a new one where the management interface wasn't enabled.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If "show network" indicates br1 is enabled and yet you have no link light you may have faulty hardware.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2017 14:48:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189095#M415100</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-09-25T14:48:50Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189110#M415101</link>
      <description>&lt;P&gt;LOL....if you only knew how many times I've heard..."thats odd...".&amp;nbsp; yeah in the running config the interfaces are all shutdown and no ips. The output of "show network" has an IPv4 Default route gateway ip, br1 has no ip, IPv4 has been manually configured and shows the network.&amp;nbsp; I can get to the FTD menu and look at all sorts of things I cant change.&amp;nbsp; Isnt there a way to drop out of FTD into a good old CLI?&amp;nbsp; If not I'm going to have to figure out how to wipe the thing and start all over to rule out hardware.&amp;nbsp; From what I've seen and tried (reset button doesnt do anything)&amp;nbsp;so far that is going to be an extra bit of joy.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2017 15:08:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189110#M415101</guid>
      <dc:creator>mawg64</dc:creator>
      <dc:date>2017-09-25T15:08:19Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189117#M415102</link>
      <description>&lt;P&gt;You can drop into what Cisco calls the Lina cli from FTD by using the command "system support diagnostic-cli" and see the underlying configuration equivalent to the classic ASA bits of code.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;There is an enable mode but no config mode in that cli though as you cannot change anything from there.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2017 15:17:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189117#M415102</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-09-25T15:17:29Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189240#M415103</link>
      <description>&lt;P&gt;I have dropped into lina with no more control than before.&amp;nbsp; I was watching a reboot of the system and it did have link lights.&amp;nbsp;&amp;nbsp;I opened to connection in MS and I was only getting data sent the was no data recieved.&amp;nbsp; Once the ASA was up the lights went dead.&amp;nbsp;&amp;nbsp; I think its time to google "How to reset it the hard way".&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2017 18:46:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189240#M415103</guid>
      <dc:creator>mawg64</dc:creator>
      <dc:date>2017-09-25T18:46:47Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189242#M415104</link>
      <description />
      <pubDate>Mon, 25 Sep 2017 18:48:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3189242#M415104</guid>
      <dc:creator>mawg64</dc:creator>
      <dc:date>2017-09-25T18:48:01Z</dc:date>
    </item>
    <item>
      <title>Re: No enable command ASA 5508-x</title>
      <link>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3191423#M415106</link>
      <description>&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;If for some reason you end up like me and something isnt quite right with you new ASA 5508-x with FTD and you need to get back to the begininning.&amp;nbsp; I finally found some help and answers on the very bottom under "&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/621/fdm/fptd-fdm-config-guide-621/fptd-fdm-mgmt.html" target="_blank"&gt;Uncommon Management Tasks&lt;/A&gt;". Then there was a little bit of extra to finish it up.&amp;nbsp; I hope this helps some one and may you never have to use it.&lt;BR /&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Procedure&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Use an SSH or CLI in to the box.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 1 &lt;STRONG&gt;&amp;gt; expert&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; at the bash prompt sudo and set the time, date and timezone.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 2&amp;nbsp; Delete any managers.&amp;nbsp;&amp;nbsp; &lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;STRONG&gt;&amp;gt; configure manager delete&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; If you enabled any feature licenses, you must disable them in&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Firepower Device Manager before deleting the local manager.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Otherwise, those licenses remain assigned to the device in Cisco&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Smart Software Manager.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Do you want to continue[yes/no] yes&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Deleting task list&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Manager successfully deleted.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 3&amp;nbsp; &lt;STRONG&gt;&amp;gt; show managers&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; No managers configured.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 4&amp;nbsp; &lt;STRONG&gt;&amp;gt; Configure manager local&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 5&amp;nbsp; &lt;STRONG&gt;&amp;gt; show managers&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Managed locally.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;Step 6 Set your system to get a DHCP ip&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;You can now use a web browser to open the Firepower Management Center&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;By clearing the configuration, you will be prompted to complete the device setup wizard.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;If you still cant log into the web interface&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 1&amp;nbsp; &lt;STRONG&gt;&amp;gt; show network&amp;nbsp;&lt;/STRONG&gt;&lt;BR /&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;You should have the default DHCP addresses in the Gateway and for IPv4, or at least in the subnet.&amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;If not then reset everything to DHCP&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Step 2&amp;nbsp; &lt;STRONG&gt;&amp;gt; configure network ipv4 and/or ipv6 dhcp&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;This may take some time to run.&amp;nbsp; Once this is done your management computer should get a DHCP ip.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;The addresses in the Gateway and for IPv4 should go back to DHCP.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Check you system to make sure it got a DHCP address.&amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; If not, set it to DHCP&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;Once everything is DHCP give it a minute to shuffle and arp.&amp;nbsp; It took me 5 mins before I could log into the web portal.&amp;nbsp; I was gettin ready to start all over again.&amp;nbsp; And then like magic it all worked.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;LAST THING TO DO!&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;One at a time, write you configs on each device and reboot after writing.&amp;nbsp; Patientce is a virtue.&amp;nbsp; It takes&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="georgia,palatino"&gt;about 5 mins to get back to a normal state and talking to each other.&amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 29 Sep 2017 01:06:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-enable-command-asa-5508-x/m-p/3191423#M415106</guid>
      <dc:creator>mawg64</dc:creator>
      <dc:date>2017-09-29T01:06:30Z</dc:date>
    </item>
  </channel>
</rss>

