Does FTD3140’s strict FXOS data plane and dropping the traffic locally (ingress/egress) unless the VLAN is being tagged as Trust? Is that somehow a requirement in FTD3140 FXOS?
Does FTD3140’s strict FXOS data plane and dropping the traffic locally (ingress/egress) unless the VLAN is being tagged as Trust? Is that somehow a requirement in FTD3140 FXOS?
Hello everyone, I'm from VietnamOur company has purchased service Smartnet for CISCO C9300, what should I do to check the status of this service package and send support requests to TACThanks for your reply. Have a nice day.
We are spinning up a new set of core switches and changing the internal IP Address scheme at the same time. I was wondering if it was possible to have multiple internal interfaces in a single security zone. The goal is to complete the new switch conf...
can someone drop plan of action how can i replace Replacing CA certificate for FTD- FCM(firepower chassis manager) or the guide
I would like to monitor the FTD via SNMP on the FTD subinterface. My monitoring system is coming from outside, and should be polling the inside interface.However, such traffic is not possible. I have read that it is not possible to communicate with t...
Hi. I believe it's a simple topic which has not been explained very clearly. I read about Tunnel & Prefilter rules on Cisco website and even on the books, but none of them was clear enough. So, Would u ask my questions here? 1. supposing we have n...
Hi colleagues, I've encountered the following situation - the system shows the following warning messages for rules in ACpolicy:Our scheme in general.We have an FMCv is deployed in the DC, which controls 2 FTD devices (FPR 3140). An Identity Policy...
Hello,in ASA Version 9.20(3)7 we tested the new threat-detection servicehttps://www.cisco.com/c/en/us/support/docs/security/secure-firewall-asa/222315-configure-threat-detection-services-for.htmlthreat-detection service invalid-vpn-accessthreat-detec...
Simple scenario, one FMC managing two pairs of firewalls in HA. To repeat there is one FMC and no plan to deploy another for redundancy. If FMC was to completely fail, I'm guessing the firewalls keep working with the last pushed FMC config. If I need...
Hi Team,I would like to know if there is a way to change the FCM syslog port.In Web interface there is no option available.Is there a way to change it via cli?
HelloWe have a lot of clients getting the following error when contacting diffrent sites: ERR_SSL_PROTOCOL_ERROR, we have read that SonicWall and Palo Alto also have these problemes. Solution is to turn off "TLS 1.3 Hybridized Kyber Support" in chro...
Hello everybody, our customer has a ASAv runnig rel. 9.16(1)28. Our monitoring has send an error message that an expiredidentity certificate (see screen dump attached) is still in the configuration. I tried to delete it from the interfaces within the...
Hey all, I'm migrating from an ASA to FTD (managed by FMC). In the current ASA deployment, we have lots of VPN users that connect to a single tunnel-group and authenticate using local user credentials configured on the ASA. Now for the magic....based...
While accessing FTD using PUTTY, I am landing on expert mode directly and not on CLISH mode.I tried ctrl+c or exit command to get out of expert mode but it did not work for me. It kicked me out of SSH session.Can anyone suggest if you have faced simi...
Hi,I have Anyconnect VPN setup with SAML authentication. I have to renew Anyconnect cert. Does a new Certificate change SAML metadata? Do I need to update anything on SAML side or this information (metadata) remains same even after cert upgrade. Plea...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
| Subject | Author | Posted |
|---|---|---|
| 08-15-2026 09:40 PM | ||
| 08-10-2026 08:58 AM | ||
| 08-10-2026 02:48 AM | ||
| 07-22-2026 05:00 AM | ||
| 07-16-2026 06:39 AM |
| User | Count |
|---|---|
| 4 | |
| 2 | |
| 1 | |
| 1 | |
| 1 |