01-24-2021 04:06 AM - edited 01-24-2021 04:08 AM
hi,
i used ftd in version 6.2.3.7 AND MY FMC SERVER IN 6.2.3.16
i have this message when i add my ftd in my fmc i use this cimmande "configure manager add X.X.X.X pass
"getPeersByRole: unable to connect to db at /ngfw/usr/local/sf/lib/perl/5.10.1/SF/PeerManager/Peers.pm line 226. Unable to access DetectionEngine::bulkLoad"
how i can resolve this issu
thanks
01-24-2021 04:16 AM
Are the new Devices?
1. do you have reachability between FMC and FTD?
2. what is the IP address of FMC and FTD?
3. Do you have any Firewalls in between?
from FTD
> show network
01-24-2021 06:25 AM
yes i have rechability betwwen fmc and ftd because another i access to ftd with ssh and another FTD was add in FMC and i dont have firewall betwwen us
01-24-2021 06:34 AM
i am sure this is not online and live, reboot FTD give some time 15-20min, and try adding?
01-24-2021 06:37 AM
hi,
i try to reboot FTD but is the same thing
Thanks
01-25-2021 03:10 AM
suggest to open a TAC case, they can get in to root access and make fix for you.
01-24-2021 06:38 AM
There are a couple of bugs that can cause this problem:
https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvc77158/?rfs=iqvred
https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvn67084/?rfs=iqvred
If you don't have anything configured on the module, it is easiest to just re-image it and re-add to FMC.
If that's not an option, then TAC may be able to assist by working with you one-on-one to recover some system files to make it work,
01-24-2021 06:49 AM
thanks,
but I have firewalls which are far away so I have to repatriate them to fix this there are no other methods to fix this
01-25-2021 12:39 AM
@CSCO12674262 as I mentioned earlier, Cisco TAC may be able to find a work around fix short of reimaging the entire module.
01-25-2021 04:55 AM
Thank you very much for your answer
but assure me that the support will find another solution to force the FTD to connect to the FMC without reimaging the firepower since the firewalls are deployed far from the central site
01-25-2021 11:48 AM
There is no way to give this assurance as the issue might be hardware related and you might have to replace the FTD. But you will not find out until TAC has had a look.
Another option you could look into is having someone onsite connect to the console port of the FTD that way you have access to the device and can check the connectivity from there also.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide