04-27-2016 02:18 AM - edited 03-12-2019 12:40 AM
Dear everyone,
I have problem witch install firewall asa 5525X, version IOS sfr 5.3.1, version firesight management 5.4.0. I was add firepower sfr to firesight management done, but cannot show any data or traffic from firesight,
Pro can help me please. Thanks you so much.
04-27-2016 02:24 AM
Hi
Is this a setup with active-passive set up of ASA where 1 ASA-sfr is active and other 1 is standby mode ? and you see this message on the standby sfr
If that's the case then its expected behavior as the Firesight see both the sfr as individual modules and not in failover state. It doesn't know about the sfr being in standby state and is not expected to receive traffic and thus shows this error.
If this is a single sfr , please check the redirection on acl in asa to make sure if traffic is being redirect to sfr as it simply indicates sfr is not receiving any traffic.
Rate if helps.
Thanks
Yogesh
04-27-2016 02:36 AM
Hi yogdhanu,
that right, i install active - stanby (HA on asa). can you tell me more details how to show traffic on firesight.
my skype: huucuong_humg. Thanks for respond!
04-27-2016 02:47 AM
Hi
You don't really need to do anything to be able to see traffic on firesight once the registration is done.
Just make sure that the access control policy rules have logging enabled. If that's there , you would see connection events from whichever sensor is active.
Hope it helps.
Yogesh
04-27-2016 03:47 AM
Hi yogdhanu,
please tell me how to make access control policy rules have logging enabled. I have edit for very long time access control policy but nothing change.
Thankyou so much!
04-27-2016 04:29 AM
04-27-2016 08:09 AM
Hi yogdhanu
thank you for reply. i have try do your way but still not ok. because i buy firewall asa from the third company so cisco does not support.
thank you so much!
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: