cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1852
Views
5
Helpful
10
Replies

CAN NOT ADD MY FTD IN MY FMC

CSCO12674262
Level 1
Level 1

hi,

 

i used ftd in version 6.2.3.7 AND MY FMC SERVER IN 6.2.3.16

 

i have this message when i add my ftd in my fmc i use this cimmande "configure manager add X.X.X.X pass 

 

"getPeersByRole: unable to connect to db at /ngfw/usr/local/sf/lib/perl/5.10.1/SF/PeerManager/Peers.pm line 226. Unable to access DetectionEngine::bulkLoad"

 

how i can resolve this issu

 

thanks

10 Replies 10

balaji.bandi
Hall of Fame
Hall of Fame

Are the new Devices?

 

1. do you have reachability between FMC and FTD?

2. what is the IP address of FMC and FTD?

3. Do you have any Firewalls in between?

 

from FTD 

> show network

 

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

yes i have rechability betwwen fmc and ftd because another i access to ftd with ssh and another FTD was add in FMC and i dont have firewall betwwen us 

balaji.bandi
Hall of Fame
Hall of Fame

i am sure this is not online and live, reboot FTD give some time 15-20min, and try adding?

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

hi, 

 

i try to reboot FTD but is the same thing 

 

Thanks 

suggest to open a TAC case, they can get in to root access and make fix for you.

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Marvin Rhoads
Hall of Fame
Hall of Fame

There are a couple of bugs that can cause this problem:

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvc77158/?rfs=iqvred

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvn67084/?rfs=iqvred

If you don't have anything configured on the module, it is easiest to just re-image it and re-add to FMC.

If that's not an option, then TAC may be able to assist by working with you one-on-one to recover some system files to make it work,

thanks, 

 

but I have firewalls which are far away so I have to repatriate them to fix this there are no other methods to fix this

@CSCO12674262 as I mentioned earlier, Cisco TAC may be able to find a work around fix short of reimaging the entire module.

Thank you very much for your answer

 

but assure me that the support will find another solution to force the FTD to connect to the FMC without reimaging the firepower since the firewalls are deployed far from the central site

There is no way to give this assurance as the issue might be hardware related and you might have to replace the FTD.  But you will not find out until TAC has had a look.

Another option you could look into is having someone onsite connect to the console port of the FTD that way you have access to the device and can check the connectivity from there also.

--
Please remember to select a correct answer and rate helpful posts
Review Cisco Networking for a $25 gift card