<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Ok, I have the pcap file, but in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055831#M998841</link>
    <description>&lt;P&gt;Ok, I have the pcap file, but how do it get it off of the SFR?&lt;/P&gt;</description>
    <pubDate>Tue, 13 Jun 2017 21:27:45 GMT</pubDate>
    <dc:creator>vpresogna</dc:creator>
    <dc:date>2017-06-13T21:27:45Z</dc:date>
    <item>
      <title>Firepower Cloud Connection Issues</title>
      <link>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055825#M998835</link>
      <description>&lt;P&gt;This is an odd one. From the sfr conolse i can ping intelligence.sourcefire.com&amp;nbsp;, nslookup works as well also, but when I try telnet i get this;&lt;/P&gt;
&lt;P&gt;Failed to connect to intelligence.sourcefire.com port 443: No route to host&lt;/P&gt;
&lt;P&gt;When I try this command found in this &lt;A href="http://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/117997-technote-firesight-00.html" target="_blank"&gt;document&lt;/A&gt;,&amp;nbsp;&amp;nbsp;sudo curl -vvk &lt;A href="https://intelligence.sourcefire.com" target="_blank"&gt;https://intelligence.sourcefire.com&lt;/A&gt; I get this;&lt;/P&gt;
&lt;P&gt;Cisco Fire Linux OS v6.2.0 (build 42)&lt;BR /&gt;Cisco ASA5508 v6.2.0.1 (build 59)&lt;/P&gt;
&lt;P&gt;&amp;gt; expert&lt;BR /&gt;admin@firepower:~$ sudo curl -vvk &lt;A href="https://intelligence.sourcefire.com" target="_blank"&gt;https://intelligence.sourcefire.com&lt;/A&gt;&lt;BR /&gt;Password:&lt;BR /&gt;* Rebuilt URL to: &lt;A href="https://intelligence.sourcefire.com/" target="_blank"&gt;https://intelligence.sourcefire.com/&lt;/A&gt;&lt;BR /&gt;*&amp;nbsp;&amp;nbsp; Trying 198.148.79.58...&lt;BR /&gt;*&amp;nbsp;&amp;nbsp; Trying 2620:28:c000:0:aba:ca:daba:58...&lt;BR /&gt;* Immediate connect fail for 2620:28:c000:0:aba:ca:daba:58: Network is unreachable&lt;BR /&gt;* connect to 198.148.79.58 port 443 failed: No route to host&lt;BR /&gt;*&amp;nbsp;&amp;nbsp; Trying 2620:28:c000:0:aba:ca:daba:58...&lt;BR /&gt;* Immediate connect fail for 2620:28:c000:0:aba:ca:daba:58: Network is unreachable&lt;BR /&gt;*&amp;nbsp;&amp;nbsp; Trying 2620:28:c000:0:aba:ca:daba:58...&lt;BR /&gt;* Immediate connect fail for 2620:28:c000:0:aba:ca:daba:58: Network is unreachable&lt;BR /&gt;* Failed to connect to intelligence.sourcefire.com port 443: No route to host&lt;BR /&gt;* Closing connection 0&lt;BR /&gt;curl: (7) Failed to connect to intelligence.sourcefire.com port 443: No route to host&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Any idea whats going on would be most appreciated.&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 13:24:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055825#M998835</guid>
      <dc:creator>vpresogna</dc:creator>
      <dc:date>2019-03-12T13:24:32Z</dc:date>
    </item>
    <item>
      <title>Is there perhaps WCCP or some</title>
      <link>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055826#M998836</link>
      <description>&lt;P&gt;Is there perhaps WCCP or some sort of a web proxy server in your environment?&lt;/P&gt;</description>
      <pubDate>Thu, 25 May 2017 10:24:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055826#M998836</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-05-25T10:24:07Z</dc:date>
    </item>
    <item>
      <title>Hello,</title>
      <link>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055827#M998837</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;per outputs, it looks to me that device is trying to communicate over IPv6 which will fail, could you re-run test and force curl tool to use only &amp;nbsp;IPv4? Would the results be the same?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Command that will force curl to run only on IPv4 stack:&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;curl -vvk &lt;A href="https://intelligence.sourcefire.com" target="_blank"&gt;https://intelligence.sourcefire.com&lt;/A&gt; -4&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Best regards,&lt;/P&gt;
&lt;P&gt;Veronika&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 25 May 2017 10:51:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055827#M998837</guid>
      <dc:creator>Veronika Klauzova</dc:creator>
      <dc:date>2017-05-25T10:51:38Z</dc:date>
    </item>
    <item>
      <title>Same error</title>
      <link>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055828#M998838</link>
      <description>&lt;P&gt;Same error&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;* Rebuilt URL to: &lt;A href="https://intelligence.sourcefire.com/" target="_blank"&gt;https://intelligence.sourcefire.com/&lt;/A&gt;&lt;BR /&gt;*&amp;nbsp;&amp;nbsp; Trying 198.148.79.58...&lt;BR /&gt;* connect to 198.148.79.58 port 443 failed: No route to host&lt;BR /&gt;* Failed to connect to intelligence.sourcefire.com port 443: No route to host&lt;BR /&gt;* Closing connection 0&lt;BR /&gt;curl: (7) Failed to connect to intelligence.sourcefire.com port 443: No route to host&lt;/P&gt;</description>
      <pubDate>Thu, 25 May 2017 16:56:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055828#M998838</guid>
      <dc:creator>vpresogna</dc:creator>
      <dc:date>2017-05-25T16:56:03Z</dc:date>
    </item>
    <item>
      <title>No WCCP or web proxies in my</title>
      <link>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055829#M998839</link>
      <description>&lt;P&gt;No WCCP or web proxies in my enviroment. Just an asa 5508 with the SFR module.&lt;/P&gt;</description>
      <pubDate>Thu, 25 May 2017 16:57:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055829#M998839</guid>
      <dc:creator>vpresogna</dc:creator>
      <dc:date>2017-05-25T16:57:06Z</dc:date>
    </item>
    <item>
      <title>Still looks like a proxy on</title>
      <link>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055830#M998840</link>
      <description>&lt;P&gt;Still looks like a proxy on the path. Could you perform in one CLI session on FMC packet captures and on other curl query?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;First I would just suggest to run following capture test and then make request using Curl:&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;tcpdump &amp;nbsp;-i eth0 port 443 and host intelligence.sourcefire.com&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;In case you dont see any output:&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;tcpdump &amp;nbsp;-i eth0 port 443 and host &amp;lt;IP address of intelligence server taken from nslookup&amp;gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;If you there is any output please re-run capture and write it to file using additional parameter -w /var/tmp/pcap1.pcap and upload here for our review.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Also please examine /var/log/messages file on FMC to see whether there are any timeouts.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Keep us posted,&lt;/P&gt;
&lt;P&gt;Veronika&lt;/P&gt;</description>
      <pubDate>Sun, 28 May 2017 19:19:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055830#M998840</guid>
      <dc:creator>Veronika Klauzova</dc:creator>
      <dc:date>2017-05-28T19:19:13Z</dc:date>
    </item>
    <item>
      <title>Ok, I have the pcap file, but</title>
      <link>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055831#M998841</link>
      <description>&lt;P&gt;Ok, I have the pcap file, but how do it get it off of the SFR?&lt;/P&gt;</description>
      <pubDate>Tue, 13 Jun 2017 21:27:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3055831#M998841</guid>
      <dc:creator>vpresogna</dc:creator>
      <dc:date>2017-06-13T21:27:45Z</dc:date>
    </item>
    <item>
      <title>Re: Ok, I have the pcap file, but</title>
      <link>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3194575#M998842</link>
      <description>&lt;P&gt;I figured it out. The gateway was incorrect on the SFR module.&lt;/P&gt;</description>
      <pubDate>Thu, 05 Oct 2017 19:23:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-cloud-connection-issues/m-p/3194575#M998842</guid>
      <dc:creator>vpresogna</dc:creator>
      <dc:date>2017-10-05T19:23:42Z</dc:date>
    </item>
  </channel>
</rss>

