<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to troubleshoot (or recover from) FTD/FMC Deployment failure in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/how-to-troubleshoot-or-recover-from-ftd-fmc-deployment-failure/m-p/3378988#M923925</link>
    <description>&lt;P&gt;Addtional Info:&lt;/P&gt;
&lt;P&gt;I've checked the syslog in FTD but I can not find the reason why the deployment failed.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I don't want to be side tracked here but... In traditional ASA (Active/Standby), we will configure ASA active device and sync the config to ASA standby device. However, in FMC, it seems each commands such as&amp;nbsp;&lt;SPAN&gt;'timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02'&lt;/SPAN&gt; are executed on both Active and Standby separately. Or I could be reading this syslog output wrong....&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;10.11.150.11 is Active FTD&lt;/P&gt;
&lt;P&gt;10.11.150.12 is Standby FTD&lt;/P&gt;
&lt;P&gt;===syslog output during the deployment failure:&amp;nbsp;&lt;/P&gt;
&lt;P&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-6-199018: May 7 00:17:17 NYP-EDGE-FW01-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][modification][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][111731][fabric/lan/A/pc-12][operSpeed(Old:1gbps, New:10gbps)][] Port Channel A/Port-channel12/12 modified&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-6-199018: May 7 00:17:17 NYP-EDGE-FW01-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][modification][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][111732][fabric/lan/A/pc-11][operSpeed(Old:1gbps, New:10gbps)][] Port Channel A/Port-channel11/11 modified&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-6-199018: May 7 00:17:17 NYP-EDGE-FW01-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][modification][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][111733][fabric/lan/A/pc-10][operSpeed(Old:1gbps, New:10gbps)][] Port Channel A/Port-channel10/10 modified&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-6-199018: May 7 00:17:17 NYP-EDGE-FW01-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][modification][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][111734][sys/svc-ext/snmp-svc][descr(Old:SNMP Service, New:)][] SNMP service modified&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog_utils: Set the system console level to: critical&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog_utils: Set messages sent to lina level to: information&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:17 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog_utils: Set the system log level to: critical&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:17 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:17 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:18 10.11.150.12 :May 07 00:17:18 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show checksum&lt;BR /&gt;May 6 20:17:20 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-6-199018: May 7 00:17:20 NYP-EDGE-FW02-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][modification][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][128266][fabric/lan/A/pc-12][operSpeed(Old:1gbps, New:10gbps)][] Port Channel A/Port-channel12/12 modified&lt;BR /&gt;May 6 20:17:20 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-6-199018: May 7 00:17:20 NYP-EDGE-FW02-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][modification][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][128267][fabric/lan/A/pc-11][operSpeed(Old:1gbps, New:10gbps)][] Port Channel A/Port-channel11/11 modified&lt;BR /&gt;May 6 20:17:20 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-6-199018: May 7 00:17:20 NYP-EDGE-FW02-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][modification][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][128268][fabric/lan/A/pc-10][operSpeed(Old:1gbps, New:10gbps)][] Port Channel A/Port-channel10/10 modified&lt;BR /&gt;May 6 20:17:20 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-6-199018: May 7 00:17:20 NYP-EDGE-FW02-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][modification][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][128269][sys/svc-ext/snmp-svc][descr(Old:SNMP Service, New:)][] SNMP service modified&lt;BR /&gt;May 6 20:17:20 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-5-199017: May 7 00:17:20 NYP-EDGE-FW02-MDF syslog_utils: Set the system console level to: critical&lt;BR /&gt;May 6 20:17:21 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-5-199017: May 7 00:17:21 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:21 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-5-199017: May 7 00:17:21 NYP-EDGE-FW02-MDF syslog_utils: Set messages sent to lina level to: information&lt;BR /&gt;May 6 20:17:21 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-5-199017: May 7 00:17:21 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:21 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-5-199017: May 7 00:17:21 NYP-EDGE-FW02-MDF syslog_utils: Set the system log level to: critical&lt;BR /&gt;May 6 20:17:21 10.11.150.12 :May 07 00:17:21 UTC: %ASA-sys-5-199017: May 7 00:17:21 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:21 10.11.150.12 :May 07 00:17:21 UTC: %ASA-sys-5-199017: May 7 00:17:21 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:22 10.11.150.12 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.12 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.11 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.12 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.11 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.12 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.12 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config failover&lt;BR /&gt;May 6 20:17:23 10.11.150.12 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show failover&lt;BR /&gt;May 6 20:17:23 10.11.150.11 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.11 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.11 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config failover&lt;BR /&gt;May 6 20:17:23 10.11.150.11 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show failover&lt;BR /&gt;May 6 20:17:24 10.11.150.12 :May 07 00:17:24 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show version&lt;BR /&gt;May 6 20:17:25 10.11.150.11 :May 07 00:17:25 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show version&lt;BR /&gt;May 6 20:17:53 10.11.150.11 :May 07 00:17:52 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show failover&lt;BR /&gt;May 6 20:17:54 10.11.150.11 :May 07 00:17:53 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'pager 0' command.&lt;BR /&gt;May 6 20:17:54 10.11.150.11 :May 07 00:17:53 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'pager 0'&lt;BR /&gt;May 6 20:17:54 10.11.150.12 :May 07 00:17:53 UTC: %ASA-config-5-111008: User 'failover' executed the 'pager 0' command.&lt;BR /&gt;May 6 20:17:54 10.11.150.12 :May 07 00:17:53 UTC: %ASA-config-5-111010: User 'failover', running 'N/A' from IP 0.0.0.0, executed 'pager 0'&lt;BR /&gt;May 6 20:17:54 10.11.150.11 :May 07 00:17:54 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'more system:running-config' command.&lt;BR /&gt;May 6 20:17:54 10.11.150.11 :May 07 00:17:54 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'more system:running-config'&lt;BR /&gt;May 6 20:17:56 10.11.150.11 :May 07 00:17:56 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show version&lt;BR /&gt;May 6 20:17:56 10.11.150.11 :May 07 00:17:56 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show crypto key mypubkey rsa&lt;BR /&gt;May 6 20:17:56 10.11.150.11 :May 07 00:17:56 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show asp inspect-dp snort&lt;BR /&gt;May 6 20:17:56 10.11.150.11 :May 07 00:17:56 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show interface&lt;BR /&gt;May 6 20:17:56 10.11.150.11 :May 07 00:17:56 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config all monitor-interface&lt;BR /&gt;May 6 20:18:07 10.11.150.11 :May 07 00:18:07 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show failover&lt;BR /&gt;May 6 20:18:15 10.11.150.11 :May 07 00:18:14 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show checksum&lt;BR /&gt;May 6 20:18:35 10.11.150.12 :May 07 00:18:35 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show checksum&lt;BR /&gt;May 6 20:18:39 10.11.150.12 :May 07 00:18:39 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show interface&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show failover&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show cluster info&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show checksum&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'strong-encryption-disable' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'strong-encryption-disable'&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'logging debug-trace' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'logging debug-trace'&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111008: User 'failover' executed the 'strong-encryption-disable' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111010: User 'failover', running 'N/A' from IP 0.0.0.0, executed 'strong-encryption-disable'&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'timeout tcp-proxy-reassembly 0:01:00' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'timeout tcp-proxy-reassembly 0:01:00'&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02'&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'no user-identity default-domain LOCAL' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'no user-identity default-domain LOCAL'&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111008: User 'failover' executed the 'logging debug-trace' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111010: User 'failover', running 'N/A' from IP 0.0.0.0, executed 'logging debug-trace'&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111008: User 'failover' executed the 'timeout tcp-proxy-reassembly 0:01:00' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111010: User 'failover', running 'N/A' from IP 0.0.0.0, executed 'timeout tcp-proxy-reassembly 0:01:00'&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111008: User 'failover' executed the 'timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111010: User 'failover', running 'N/A' from IP 0.0.0.0, executed 'timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02'&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111008: User 'failover' executed the 'no user-identity default-domain LOCAL' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111010: User 'failover', running 'N/A' from IP 0.0.0.0, executed 'no user-identity default-domain LOCAL'&lt;BR /&gt;May 6 20:19:59 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-6-199018: May 7 00:19:59 NYP-EDGE-FW02-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][modification][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][128474][sys/svc-ext/snmp-svc][descr(Old:, New:SNMP Service)][] SNMP service modified&lt;BR /&gt;May 6 20:19:59 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-5-199017: May 7 00:19:59 NYP-EDGE-FW02-MDF syslog_utils: Set the system console level to: critical&lt;BR /&gt;May 6 20:19:59 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-5-199017: May 7 00:19:59 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:00 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-5-199017: May 7 00:20:00 NYP-EDGE-FW02-MDF syslog_utils: Set messages sent to lina level to: information&lt;BR /&gt;May 6 20:20:00 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-5-199017: May 7 00:20:00 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:00 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-5-199017: May 7 00:20:00 NYP-EDGE-FW02-MDF syslog_utils: Set the system log level to: critical&lt;BR /&gt;May 6 20:20:00 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-5-199017: May 7 00:20:00 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:00 10.11.150.12 :May 07 00:20:00 UTC: %ASA-sys-5-199017: May 7 00:20:00 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:01 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-6-199018: May 7 00:20:01 NYP-EDGE-FW01-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][modification][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][112034][sys/svc-ext/snmp-svc][descr(Old:, New:SNMP Service)][] SNMP service modified&lt;BR /&gt;May 6 20:20:01 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:01 NYP-EDGE-FW01-MDF syslog_utils: Set the system console level to: critical&lt;BR /&gt;May 6 20:20:01 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:01 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:02 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:02 NYP-EDGE-FW01-MDF syslog_utils: Set messages sent to lina level to: information&lt;BR /&gt;May 6 20:20:02 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:02 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:02 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:02 NYP-EDGE-FW01-MDF syslog_utils: Set the system log level to: critical&lt;BR /&gt;May 6 20:20:02 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:02 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:02 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:02 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface INSIDE-VLAN14&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface INSIDE-VLAN16&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface INSIDE-VLAN18&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface INSIDE-VLAN150&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface OUTSIDE-VLAN801&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface OUTSIDE-VLAN901&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface DMZ-NYP&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface diagnostic&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface INSIDE-VLAN14 waiting&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface INSIDE-VLAN16 waiting&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface INSIDE-VLAN18 waiting&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface INSIDE-VLAN150 waiting&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface OUTSIDE-VLAN801 waiting&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface OUTSIDE-VLAN901 waiting&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface DMZ-NYP waiting&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface INSIDE-VLAN14 normal&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface INSIDE-VLAN16 normal&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface INSIDE-VLAN18 normal&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface INSIDE-VLAN150 normal&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface OUTSIDE-VLAN801 normal&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface OUTSIDE-VLAN901 normal&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface DMZ-NYP normal&lt;BR /&gt;May 6 20:20:39 10.11.150.12 :May 07 00:20:39 UTC: %ASA-ha-6-210022: LU missed 4 updates&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface INSIDE-VLAN14 normal&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface INSIDE-VLAN16 normal&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface INSIDE-VLAN18 normal&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface INSIDE-VLAN150 normal&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface OUTSIDE-VLAN801 normal&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface OUTSIDE-VLAN901 normal&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface DMZ-NYP normal&lt;/P&gt;</description>
    <pubDate>Mon, 07 May 2018 01:00:04 GMT</pubDate>
    <dc:creator>tnakano03</dc:creator>
    <dc:date>2018-05-07T01:00:04Z</dc:date>
    <item>
      <title>How to troubleshoot (or recover from) FTD/FMC Deployment failure</title>
      <link>https://community.cisco.com/t5/network-security/how-to-troubleshoot-or-recover-from-ftd-fmc-deployment-failure/m-p/3378966#M923924</link>
      <description>&lt;P&gt;Model/Version:&lt;/P&gt;
&lt;P&gt;Firepower 2110/Threat Defense (77) Version 6.2.2.3 (Build 66)&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Firepower Management Center for VMWare/Software Version 6.2.3 (build 83)&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;===Issue&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;I modified "Floating Connection" timeouts parameter to 30 sec (default is 0) in Platform Settings and I deployed the new config from FMC to FTD. For&amp;nbsp;some reason, the deployment failed. So, I set back the the&amp;nbsp;"Floating Connection" timeouts parameter to default and push the config again. Now the deployment failed again. I rebooted both Active/Standby FTDs. But I still get the same error..."Deployment failed. Please modify the description of your Access Policy, save the policy, and attempt the deploy again. If problem persists after retrying, contact Cisco TAC."&amp;nbsp; I can get only generic error messages and I don't know where to start troubleshooting. I wish FMC has a feature like Juniper or PAN such as commit check or validate the config and tell where is a wrong config.....&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Question:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;How can we troubleshoot a deployment issue? Or how can we cancel the bad deployment?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So far, I've checked the followings...&lt;/P&gt;
&lt;P&gt;1. Deploy transcript in FMC =&amp;gt; Too generic and I see any clue other that it was roll backed scucessfully.&lt;/P&gt;
&lt;P&gt;=========SNORT APPLY=========&lt;BR /&gt;========= CLI APPLY =========&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;========= INFRASTRUCTURE MESSAGES =========&lt;BR /&gt;=========SNORT APPLY=========&lt;BR /&gt;========= CLI APPLY =========&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;========= INFRASTRUCTURE MESSAGES =========&lt;BR /&gt;null&lt;BR /&gt;Platform settings were successful.&lt;BR /&gt; Lina Files Rollback successful&lt;/P&gt;
&lt;P&gt;Rollback APP was successful.ClusterAppConfRollbackStatus : 1&lt;BR /&gt;ClusterFileCopyFileName : null&lt;BR /&gt;MSG_ID : 35&lt;BR /&gt;NODE_ID : 1&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;2.&amp;nbsp;tail -f /ngfw/var/log/action_queue.log in FTD =&amp;gt; I see the roll back was run. But I don't see why FTD had to roll back....&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;May 6 17:15:33 NYP-EDGE-FW01-MDF policy_apply.pl[10441]: --Timer 'SF::NGFW::PolicyApply::signalDetection' 15.037 sec&lt;BR /&gt;May 6 17:15:33 NYP-EDGE-FW01-MDF policy_apply.pl[10441]: --Timer 'snort DAQ reload for de fcbdd69a-082d-11e8-8eb8-79ec0b048beb' 0.403 sec&lt;BR /&gt;May 6 17:15:33 NYP-EDGE-FW01-MDF policy_apply.pl[10441]: --Timer 'reload RNA on de fcbdd69a-082d-11e8-8eb8-79ec0b048beb' 1.056 sec&lt;BR /&gt;May 6 17:15:33 NYP-EDGE-FW01-MDF policy_apply.pl[10441]: --Timer 'hup sftunnel' 0.007 sec&lt;BR /&gt;May 6 17:15:33 NYP-EDGE-FW01-MDF policy_apply.pl[10441]: store deployment state to disk... at /ngfw/var/cisco/deploy/sandbox/exporter-pkg/code/SF/UMPD/Transaction.pm line 914.&lt;BR /&gt;May 6 17:15:33 NYP-EDGE-FW01-MDF policy_apply.pl[10441]: Released Deployment lock at /ngfw/usr/local/sf/bin/policy_apply.pl line 228.&lt;BR /&gt;May 6 17:15:33 NYP-EDGE-FW01-MDF policy_apply.pl[10441]: policy apply phase SIGNAL exiting with exit code: 0 at /ngfw/usr/local/sf/bin/policy_apply.pl line 51.&lt;BR /&gt;May 6 17:16:28 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: policy_apply.pl called with $VAR1 = [&lt;BR /&gt;May 6 17:16:28 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: '/var/cisco/deploy/db/21474854216/policy_deployment.db',&lt;BR /&gt;May 6 17:16:28 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: 'ROLLBACK',&lt;BR /&gt;May 6 17:16:28 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: undef&lt;BR /&gt;May 6 17:16:28 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: ];&lt;BR /&gt;May 6 17:16:28 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: including code from /ngfw/var/cisco/deploy/sandbox/exporter-pkg/code at /ngfw/usr/local/sf/bin/policy_apply.pl line 115.&lt;BR /&gt;May 6 17:16:30 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: fmc_version is 6.2.3 and device_version is 6.2.2.3 . at /ngfw/var/cisco/deploy/sandbox/exporter-pkg/code/SF/NGFW/PolicyApply.pm line 2074.&lt;BR /&gt;May 6 17:16:30 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: Setting backward compatibility for devices with 6.2.2 version at /ngfw/var/cisco/deploy/sandbox/exporter-pkg/code/SF/NGFW/PolicyApply.pm line 2100.&lt;BR /&gt;May 6 17:16:30 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: Checking if any conflicting process is running at /ngfw/usr/local/sf/bin/policy_apply.pl line 168.&lt;BR /&gt;May 6 17:16:30 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: Checking for lock file /ngfw/var/sf/geodb/peers/.push_lck at /ngfw/var/cisco/deploy/sandbox/exporter-pkg/code/SF/NGFW/PolicyApply.pm line 300.&lt;BR /&gt;May 6 17:16:30 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: Checking for lock file /ngfw/var/sf/run/deployment.lock at /ngfw/var/cisco/deploy/sandbox/exporter-pkg/code/SF/NGFW/PolicyApply.pm line 300.&lt;BR /&gt;May 6 17:16:30 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: Checking for lock file /ngfw/var/sf/run/securityIntelligence.lock at /ngfw/var/cisco/deploy/sandbox/exporter-pkg/code/SF/NGFW/PolicyApply.pm line 300.&lt;BR /&gt;May 6 17:16:30 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: No conflicting process is running at /ngfw/usr/local/sf/bin/policy_apply.pl line 173.&lt;BR /&gt;May 6 17:16:30 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: Acquired Deployment lock at /ngfw/usr/local/sf/bin/policy_apply.pl line 178.&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: wrote /ngfw/var/tmp/OOiGTFploa at /ngfw/var/cisco/deploy/sandbox/exporter-pkg/code/SF/NGFW/PolicyApply.pm line 827.&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: SCRIPT CONTENT:&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: #!/usr/bin/perl&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: &lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: use Data::Dumper;&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: use FlyLoader;&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: &lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: unshift (@INC, '/ngfw/var/cisco/deploy/pkg/var/cisco/packages/exporter-6.2.3-83/code');&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: print "loading '/ngfw/var/cisco/deploy/pkg/var/cisco/packages/exporter-6.2.3-83/code'\n";&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: &lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: print "initiating rollback...\n";&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: SF::NGFW::PolicyApply::deploy( '/var/cisco/deploy/db/21474849832/policy_deployment.db', undef, 1 );&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: print "rollback complete!&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: ";&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: &lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: =========================== EXECUTE ROLLBACK SCRIPT =========================== at /ngfw/var/cisco/deploy/sandbox/exporter-pkg/code/SF/NGFW/PolicyApply.pm line 829.&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: Warning: something's wrong at /ngfw/var/cisco/deploy/sandbox/exporter-pkg/code/SF/NGFW/PolicyApply.pm line 832.&lt;BR /&gt;May 6 17:16:32 NYP-EDGE-FW01-MDF policy_apply.pl[13184]: ========================== DONE WITH ROLLBACK SCRIPT ==============&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;3. Lina preview =&amp;gt;&amp;nbsp; I don't see anything wrong... in here. Do you?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;###Flex-config Prepended CLI ###&lt;/P&gt;
&lt;P&gt;###CLI generated from managed features ###&lt;BR /&gt;logging debug-trace&lt;BR /&gt;timeout tcp-proxy-reassembly 0:01:00&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;monitor-interface diagnostic&lt;BR /&gt;no logging fmc MANAGER_VPN_EVENT_LIST&lt;/P&gt;
&lt;P&gt;no logging list MANAGER_VPN_EVENT_LIST&lt;BR /&gt;logging list MANAGER_VPN_EVENT_LIST level errors class auth&lt;BR /&gt;logging list MANAGER_VPN_EVENT_LIST level errors class vpn&lt;BR /&gt;logging list MANAGER_VPN_EVENT_LIST level errors class vpnc&lt;BR /&gt;logging list MANAGER_VPN_EVENT_LIST level errors class vpnfo&lt;BR /&gt;logging list MANAGER_VPN_EVENT_LIST level errors class vpnlb&lt;BR /&gt;logging list MANAGER_VPN_EVENT_LIST level errors class webfo&lt;BR /&gt;logging list MANAGER_VPN_EVENT_LIST level errors class webvpn&lt;BR /&gt;logging list MANAGER_VPN_EVENT_LIST level errors class ca&lt;BR /&gt;logging list MANAGER_VPN_EVENT_LIST level errors class svc&lt;BR /&gt;logging list MANAGER_VPN_EVENT_LIST level errors class ssl&lt;BR /&gt;logging list MANAGER_VPN_EVENT_LIST level errors class dap&lt;BR /&gt;logging list MANAGER_VPN_EVENT_LIST level errors class ipaa&lt;BR /&gt; logging fmc MANAGER_VPN_EVENT_LIST&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;###Flex-config Appended CLI ###&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:43:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-troubleshoot-or-recover-from-ftd-fmc-deployment-failure/m-p/3378966#M923924</guid>
      <dc:creator>tnakano03</dc:creator>
      <dc:date>2020-02-21T15:43:33Z</dc:date>
    </item>
    <item>
      <title>Re: How to troubleshoot (or recover from) FTD/FMC Deployment failure</title>
      <link>https://community.cisco.com/t5/network-security/how-to-troubleshoot-or-recover-from-ftd-fmc-deployment-failure/m-p/3378988#M923925</link>
      <description>&lt;P&gt;Addtional Info:&lt;/P&gt;
&lt;P&gt;I've checked the syslog in FTD but I can not find the reason why the deployment failed.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I don't want to be side tracked here but... In traditional ASA (Active/Standby), we will configure ASA active device and sync the config to ASA standby device. However, in FMC, it seems each commands such as&amp;nbsp;&lt;SPAN&gt;'timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02'&lt;/SPAN&gt; are executed on both Active and Standby separately. Or I could be reading this syslog output wrong....&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;10.11.150.11 is Active FTD&lt;/P&gt;
&lt;P&gt;10.11.150.12 is Standby FTD&lt;/P&gt;
&lt;P&gt;===syslog output during the deployment failure:&amp;nbsp;&lt;/P&gt;
&lt;P&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-6-199018: May 7 00:17:17 NYP-EDGE-FW01-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][modification][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][111731][fabric/lan/A/pc-12][operSpeed(Old:1gbps, New:10gbps)][] Port Channel A/Port-channel12/12 modified&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-6-199018: May 7 00:17:17 NYP-EDGE-FW01-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][modification][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][111732][fabric/lan/A/pc-11][operSpeed(Old:1gbps, New:10gbps)][] Port Channel A/Port-channel11/11 modified&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-6-199018: May 7 00:17:17 NYP-EDGE-FW01-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][modification][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][111733][fabric/lan/A/pc-10][operSpeed(Old:1gbps, New:10gbps)][] Port Channel A/Port-channel10/10 modified&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-6-199018: May 7 00:17:17 NYP-EDGE-FW01-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][modification][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][111734][sys/svc-ext/snmp-svc][descr(Old:SNMP Service, New:)][] SNMP service modified&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog_utils: Set the system console level to: critical&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog_utils: Set messages sent to lina level to: information&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:16 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:17 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog_utils: Set the system log level to: critical&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:17 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:17 10.11.150.11 :May 07 00:17:17 UTC: %ASA-sys-5-199017: May 7 00:17:17 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:18 10.11.150.12 :May 07 00:17:18 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show checksum&lt;BR /&gt;May 6 20:17:20 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-6-199018: May 7 00:17:20 NYP-EDGE-FW02-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][modification][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][128266][fabric/lan/A/pc-12][operSpeed(Old:1gbps, New:10gbps)][] Port Channel A/Port-channel12/12 modified&lt;BR /&gt;May 6 20:17:20 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-6-199018: May 7 00:17:20 NYP-EDGE-FW02-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][modification][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][128267][fabric/lan/A/pc-11][operSpeed(Old:1gbps, New:10gbps)][] Port Channel A/Port-channel11/11 modified&lt;BR /&gt;May 6 20:17:20 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-6-199018: May 7 00:17:20 NYP-EDGE-FW02-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][modification][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][128268][fabric/lan/A/pc-10][operSpeed(Old:1gbps, New:10gbps)][] Port Channel A/Port-channel10/10 modified&lt;BR /&gt;May 6 20:17:20 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-6-199018: May 7 00:17:20 NYP-EDGE-FW02-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][modification][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][128269][sys/svc-ext/snmp-svc][descr(Old:SNMP Service, New:)][] SNMP service modified&lt;BR /&gt;May 6 20:17:20 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-5-199017: May 7 00:17:20 NYP-EDGE-FW02-MDF syslog_utils: Set the system console level to: critical&lt;BR /&gt;May 6 20:17:21 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-5-199017: May 7 00:17:21 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:21 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-5-199017: May 7 00:17:21 NYP-EDGE-FW02-MDF syslog_utils: Set messages sent to lina level to: information&lt;BR /&gt;May 6 20:17:21 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-5-199017: May 7 00:17:21 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:21 10.11.150.12 :May 07 00:17:20 UTC: %ASA-sys-5-199017: May 7 00:17:21 NYP-EDGE-FW02-MDF syslog_utils: Set the system log level to: critical&lt;BR /&gt;May 6 20:17:21 10.11.150.12 :May 07 00:17:21 UTC: %ASA-sys-5-199017: May 7 00:17:21 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:21 10.11.150.12 :May 07 00:17:21 UTC: %ASA-sys-5-199017: May 7 00:17:21 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:17:22 10.11.150.12 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.12 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.11 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.12 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.11 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.12 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.12 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config failover&lt;BR /&gt;May 6 20:17:23 10.11.150.12 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show failover&lt;BR /&gt;May 6 20:17:23 10.11.150.11 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.11 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config interface&lt;BR /&gt;May 6 20:17:23 10.11.150.11 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config failover&lt;BR /&gt;May 6 20:17:23 10.11.150.11 :May 07 00:17:22 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show failover&lt;BR /&gt;May 6 20:17:24 10.11.150.12 :May 07 00:17:24 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show version&lt;BR /&gt;May 6 20:17:25 10.11.150.11 :May 07 00:17:25 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show version&lt;BR /&gt;May 6 20:17:53 10.11.150.11 :May 07 00:17:52 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show failover&lt;BR /&gt;May 6 20:17:54 10.11.150.11 :May 07 00:17:53 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'pager 0' command.&lt;BR /&gt;May 6 20:17:54 10.11.150.11 :May 07 00:17:53 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'pager 0'&lt;BR /&gt;May 6 20:17:54 10.11.150.12 :May 07 00:17:53 UTC: %ASA-config-5-111008: User 'failover' executed the 'pager 0' command.&lt;BR /&gt;May 6 20:17:54 10.11.150.12 :May 07 00:17:53 UTC: %ASA-config-5-111010: User 'failover', running 'N/A' from IP 0.0.0.0, executed 'pager 0'&lt;BR /&gt;May 6 20:17:54 10.11.150.11 :May 07 00:17:54 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'more system:running-config' command.&lt;BR /&gt;May 6 20:17:54 10.11.150.11 :May 07 00:17:54 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'more system:running-config'&lt;BR /&gt;May 6 20:17:56 10.11.150.11 :May 07 00:17:56 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show version&lt;BR /&gt;May 6 20:17:56 10.11.150.11 :May 07 00:17:56 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show crypto key mypubkey rsa&lt;BR /&gt;May 6 20:17:56 10.11.150.11 :May 07 00:17:56 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show asp inspect-dp snort&lt;BR /&gt;May 6 20:17:56 10.11.150.11 :May 07 00:17:56 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show interface&lt;BR /&gt;May 6 20:17:56 10.11.150.11 :May 07 00:17:56 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show running-config all monitor-interface&lt;BR /&gt;May 6 20:18:07 10.11.150.11 :May 07 00:18:07 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show failover&lt;BR /&gt;May 6 20:18:15 10.11.150.11 :May 07 00:18:14 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show checksum&lt;BR /&gt;May 6 20:18:35 10.11.150.12 :May 07 00:18:35 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show checksum&lt;BR /&gt;May 6 20:18:39 10.11.150.12 :May 07 00:18:39 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show interface&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show failover&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show cluster info&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-7-111009: User 'enable_1' executed cmd: show checksum&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'strong-encryption-disable' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'strong-encryption-disable'&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'logging debug-trace' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'logging debug-trace'&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111008: User 'failover' executed the 'strong-encryption-disable' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111010: User 'failover', running 'N/A' from IP 0.0.0.0, executed 'strong-encryption-disable'&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'timeout tcp-proxy-reassembly 0:01:00' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'timeout tcp-proxy-reassembly 0:01:00'&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02'&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111008: User 'enable_1' executed the 'no user-identity default-domain LOCAL' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.11 :May 07 00:19:57 UTC: %ASA-config-5-111010: User 'enable_1', running 'N/A' from IP 0.0.0.0, executed 'no user-identity default-domain LOCAL'&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111008: User 'failover' executed the 'logging debug-trace' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111010: User 'failover', running 'N/A' from IP 0.0.0.0, executed 'logging debug-trace'&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111008: User 'failover' executed the 'timeout tcp-proxy-reassembly 0:01:00' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111010: User 'failover', running 'N/A' from IP 0.0.0.0, executed 'timeout tcp-proxy-reassembly 0:01:00'&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111008: User 'failover' executed the 'timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111010: User 'failover', running 'N/A' from IP 0.0.0.0, executed 'timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02'&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111008: User 'failover' executed the 'no user-identity default-domain LOCAL' command.&lt;BR /&gt;May 6 20:19:58 10.11.150.12 :May 07 00:19:58 UTC: %ASA-config-5-111010: User 'failover', running 'N/A' from IP 0.0.0.0, executed 'no user-identity default-domain LOCAL'&lt;BR /&gt;May 6 20:19:59 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-6-199018: May 7 00:19:59 NYP-EDGE-FW02-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][modification][1525649179/2e4b3e3c-b7f2-46c2-a165-f08846a06852OzJjAoIUhh5GFNXZsTc5K][128474][sys/svc-ext/snmp-svc][descr(Old:, New:SNMP Service)][] SNMP service modified&lt;BR /&gt;May 6 20:19:59 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-5-199017: May 7 00:19:59 NYP-EDGE-FW02-MDF syslog_utils: Set the system console level to: critical&lt;BR /&gt;May 6 20:19:59 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-5-199017: May 7 00:19:59 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:00 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-5-199017: May 7 00:20:00 NYP-EDGE-FW02-MDF syslog_utils: Set messages sent to lina level to: information&lt;BR /&gt;May 6 20:20:00 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-5-199017: May 7 00:20:00 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:00 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-5-199017: May 7 00:20:00 NYP-EDGE-FW02-MDF syslog_utils: Set the system log level to: critical&lt;BR /&gt;May 6 20:20:00 10.11.150.12 :May 07 00:19:59 UTC: %ASA-sys-5-199017: May 7 00:20:00 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:00 10.11.150.12 :May 07 00:20:00 UTC: %ASA-sys-5-199017: May 7 00:20:00 NYP-EDGE-FW02-MDF syslog-ng[7028]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:01 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-6-199018: May 7 00:20:01 NYP-EDGE-FW01-MDF FPRM: &amp;lt;&amp;lt;%%FPRM-6-AUDIT&amp;gt;&amp;gt; [admin][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][modification][1525651181/9c22c8df-b2cc-4618-8523-5a192713c21coGdmsekp0CU5qE9hnxxjm][112034][sys/svc-ext/snmp-svc][descr(Old:, New:SNMP Service)][] SNMP service modified&lt;BR /&gt;May 6 20:20:01 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:01 NYP-EDGE-FW01-MDF syslog_utils: Set the system console level to: critical&lt;BR /&gt;May 6 20:20:01 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:01 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:02 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:02 NYP-EDGE-FW01-MDF syslog_utils: Set messages sent to lina level to: information&lt;BR /&gt;May 6 20:20:02 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:02 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:02 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:02 NYP-EDGE-FW01-MDF syslog_utils: Set the system log level to: critical&lt;BR /&gt;May 6 20:20:02 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:02 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:02 10.11.150.11 :May 07 00:20:01 UTC: %ASA-sys-5-199017: May 7 00:20:02 NYP-EDGE-FW01-MDF syslog-ng[7025]: Configuration reload request received, reloading configuration;&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface INSIDE-VLAN14&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface INSIDE-VLAN16&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface INSIDE-VLAN18&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface INSIDE-VLAN150&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface OUTSIDE-VLAN801&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface OUTSIDE-VLAN901&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface DMZ-NYP&lt;BR /&gt;May 6 20:20:31 10.11.150.12 :May 07 00:20:30 UTC: %ASA-ha-1-105006: (Secondary) Link status 'Up' on interface diagnostic&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface INSIDE-VLAN14 waiting&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface INSIDE-VLAN16 waiting&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface INSIDE-VLAN18 waiting&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface INSIDE-VLAN150 waiting&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface OUTSIDE-VLAN801 waiting&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface OUTSIDE-VLAN901 waiting&lt;BR /&gt;May 6 20:20:33 10.11.150.12 :May 07 00:20:33 UTC: %ASA-ha-1-105003: (Secondary) Monitoring on interface DMZ-NYP waiting&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface INSIDE-VLAN14 normal&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface INSIDE-VLAN16 normal&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface INSIDE-VLAN18 normal&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface INSIDE-VLAN150 normal&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface OUTSIDE-VLAN801 normal&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface OUTSIDE-VLAN901 normal&lt;BR /&gt;May 6 20:20:35 10.11.150.11 :May 07 00:20:34 UTC: %ASA-ha-1-105004: (Primary) Monitoring on interface DMZ-NYP normal&lt;BR /&gt;May 6 20:20:39 10.11.150.12 :May 07 00:20:39 UTC: %ASA-ha-6-210022: LU missed 4 updates&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface INSIDE-VLAN14 normal&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface INSIDE-VLAN16 normal&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface INSIDE-VLAN18 normal&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface INSIDE-VLAN150 normal&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface OUTSIDE-VLAN801 normal&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface OUTSIDE-VLAN901 normal&lt;BR /&gt;May 6 20:20:43 10.11.150.12 :May 07 00:20:43 UTC: %ASA-ha-1-105004: (Secondary) Monitoring on interface DMZ-NYP normal&lt;/P&gt;</description>
      <pubDate>Mon, 07 May 2018 01:00:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-troubleshoot-or-recover-from-ftd-fmc-deployment-failure/m-p/3378988#M923925</guid>
      <dc:creator>tnakano03</dc:creator>
      <dc:date>2018-05-07T01:00:04Z</dc:date>
    </item>
    <item>
      <title>Re: How to troubleshoot (or recover from) FTD/FMC Deployment failure</title>
      <link>https://community.cisco.com/t5/network-security/how-to-troubleshoot-or-recover-from-ftd-fmc-deployment-failure/m-p/3380117#M923926</link>
      <description>&lt;P&gt;I opened a Cisco TAC case. Cisco support gave me the link (a bug) and we tried the workaround (rename Access Policy description/name and redeploy it) but it didn't fix my problem. I submitted Troubleshoot files of FTD and FMC to Cisco TAC. I really want to know where the deployment is failing....&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvi74560/?reffering_site=dumpcr" target="_blank"&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvi74560/?reffering_site=dumpcr&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 08 May 2018 14:15:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-troubleshoot-or-recover-from-ftd-fmc-deployment-failure/m-p/3380117#M923926</guid>
      <dc:creator>tnakano03</dc:creator>
      <dc:date>2018-05-08T14:15:35Z</dc:date>
    </item>
    <item>
      <title>Re: How to troubleshoot (or recover from) FTD/FMC Deployment failure</title>
      <link>https://community.cisco.com/t5/network-security/how-to-troubleshoot-or-recover-from-ftd-fmc-deployment-failure/m-p/3381877#M923927</link>
      <description>&lt;P&gt;Resolved!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It took 4 days...but finally I got an experienced FTD/FMC&amp;nbsp;TAC&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;engineer and pointed me to the right direction.&amp;nbsp;FTD/FMC&amp;nbsp;has a troubleshooting tool called "pigtail deploy" (in linux mode) to show all deployment related debug logs in one session. I recommend to redirect a console output to a text file since they have a lot of outputs. Then, you need to find key word "ERROR:" to spot what FTD is complaining about.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;[How to use "pigtail deploy"]&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;--FTD&lt;/P&gt;
&lt;P&gt;&amp;gt; expert&lt;BR /&gt;admin@FTD:~$ sudo su -&lt;BR /&gt;Password:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;BR /&gt;root@&lt;SPAN&gt;FTD&lt;/SPAN&gt;:~# pigtail deploy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;--FMC&lt;/P&gt;
&lt;P&gt;admin@firepower:~$ sudo su -&lt;BR /&gt;Password:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;BR /&gt;root@firepower:~# pigtail deploy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;[Root case of my issue and how to fix]&lt;/P&gt;
&lt;P&gt;Step1 - Root Cause:&lt;/P&gt;
&lt;P&gt;I found the following error in FTD pigtail deploy output. I didn't ask to FMC but it seems FMC was trying to remove the following route-map. However, I was using it in Policy Based Routing....&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;NGFW: 05-10 22:56:00 &amp;lt;error-info id="36" type="error"&amp;gt;ERROR: route-map RMAP-PBR-10.11.14.0-PL23 is attached to routing protocols&lt;BR /&gt;NGFW: 05-10 22:56:00 (EIGRP/RIP/OSPF/BGP/ISIS) or used in policy based routing.&lt;BR /&gt;NGFW: 05-10 22:56:00 Please remove the relevant configuration before removing the route_map&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Step2 - How to fix.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I used the existing Flexconfig object called "Policy_Based_Routing_Clear" in Flexconfig and deployed. This time, the deployment was successful!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;[Lesson Learned]&lt;/P&gt;
&lt;P&gt;1. Flexconfig is very hard to use. Specially, the order of commands to put in Flexconfig&lt;/P&gt;
&lt;P&gt;2. Need to check Preview carefully before you apply Flexconfig (You might see unexpected commands in there generated by FMC, not from your Flexconfig. And that might be conflicting with your intent)&lt;/P&gt;
&lt;P&gt;3. When you have a deployment issue, "pigtail deploy" is your best friend&lt;/P&gt;</description>
      <pubDate>Fri, 11 May 2018 14:33:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-troubleshoot-or-recover-from-ftd-fmc-deployment-failure/m-p/3381877#M923927</guid>
      <dc:creator>tnakano03</dc:creator>
      <dc:date>2018-05-11T14:33:36Z</dc:date>
    </item>
    <item>
      <title>Re: How to troubleshoot (or recover from) FTD/FMC Deployment failure</title>
      <link>https://community.cisco.com/t5/network-security/how-to-troubleshoot-or-recover-from-ftd-fmc-deployment-failure/m-p/3382426#M923928</link>
      <description>&lt;P&gt;Thanks for sharing the fix to your problem. +5&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I've had some Cisco staff recommend to avoid Flexconfig if you don't really need those few features only available via it. It's a bit of a kludge to expose features they haven't quite gotten into the UI (or API) just yet. Unfortunately there are a number of things important to many customers that can only be configured that way. Catch 22.&lt;/P&gt;</description>
      <pubDate>Sun, 13 May 2018 14:05:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-troubleshoot-or-recover-from-ftd-fmc-deployment-failure/m-p/3382426#M923928</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-05-13T14:05:23Z</dc:date>
    </item>
  </channel>
</rss>

