cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1396
Views
0
Helpful
1
Replies

FTD can not directly forwarding when FMC connect to

vuthaibao
Level 1
Level 1

Hello,

I plan to do demo with topology below:Topology.PNG

 

I used evaluation license for this demo(90 days).

When FTD run in standalone mode(locally management) => everything is OK, it can do route to forwarding packet, detect macilious request and download malware file.

When I add FMC management to FTD => FTD can not directly forwarding packet. FTD interfaces can not ping each other and didn't any directly route.

More troubleshoot information:

FTD route table:show route.png

 

Captured ping packet when ping from 172.163.90.50 to 10.15.15.50:

capture traffic.png

Policy apply from FMC to FTD:

FMC policy.png

Config1 file: the FTD running-config when locally management=> running OK.

Config2 file: the FTD ruuning-config when FMC management => can not directly forwarding.

Hope your support! Thank you very much!

 

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

Odd that your capture notes "no route to host". For a connected subnet that's usually what we see when the interface is down.

Can you check the output of packet-tracer? Also provide "show interface" output.

Review Cisco Networking products for a $25 gift card