01-11-2022 03:07 PM
The ASA is acting flaky, and I noticed today the following in "show ver":
FPGA UPGRADE Version : 2.4
FPGA GOLDEN Version : unavailable
ROMMON Version : 1.1.14
WARNING: Platform FPGA version is older than minimum recommended image.
WARNING: Platform ROMMON version is older than minimum recommended image.
Image type : Release
Key Version : A
I've downloaded the firmware for ROMMON, but I can't find anything on the FPGA. Is there a file for this, or will the firmware take care of this?
Is this upgraded through CLI, or is this somehow through the GUI. The only thing I can find is through the CLI, but I don't want to brick this firewall.
Thank you.
Solved! Go to Solution.
01-13-2022 04:42 AM
A rommon upgrade should fix both the rommon and FPGA versions.
Please see this document for detailed instructions on upgrading the rommon of the ASA running FTD image:
https://community.cisco.com/t5/security-documents/asa-x-rommon-upgrade-for-ftd-sensors/ta-p/3746210
01-11-2022 03:27 PM
7.0.1? The ASA may be under attack from Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Interface Cross-Site Scripting Vulnerabilities.
Update June 28, 2021: Cisco has become aware that public exploit code exists for CVE-2020-3580, and this vulnerability is being actively exploited.
01-12-2022 01:29 AM
May be worth giving shot to upgrade, rather sorry with attack.
01-12-2022 07:23 AM
If this was running ASA firmware, I would be a simple process to upgrade ROMMON through CLI. When you're in FTD and you have to get to the ASA-like CLI using "system support diagnostic-cli" then "en" and then try to upgrade ROMMON at that point, I'm concerned it will fail. I'd expect to have to upgrade possibly in expert mode, but I can't find any documentation. Hopefully, this is more clear.
01-12-2022 07:18 AM
I wasn't clear that this firewall is running FTD 7.0.1, not ASA firmware.
01-13-2022 04:42 AM
A rommon upgrade should fix both the rommon and FPGA versions.
Please see this document for detailed instructions on upgrading the rommon of the ASA running FTD image:
https://community.cisco.com/t5/security-documents/asa-x-rommon-upgrade-for-ftd-sensors/ta-p/3746210
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide