cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1435
Views
5
Helpful
6
Replies

cannot register FTD to FMC

Rofiqul7343
Level 1
Level 1

FMC and FTD Both side time zone and NTP server same. but when will try to join the FMC to FTD not joining show this massage, even i apply basic troubleshoot,  anyone to know how to solve the problem please share the knowledge. 

FTD & FMC Both Version: 7.0.4

WhatsApp Image 2022-10-24 at 10.05.50 AM.jpeg

6 Replies 6

balaji.bandi
Hall of Fame
Hall of Fame

Both are in the same LAN and same network or location? Do you have any Firewall between FMC and FTD?

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Hey balaji,

yeah FTD AND FMC both are same network and FMC have mount other rack, they are same location.

FTD & FMC can't connected Firewall

check if both devices are reachable and see if the network is up, may be try to ping each other.

Hope when you setup a FTD using remote management, rather FDM Local ?

check show managers from console ?

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

The FMC and FTD use port 8305/tcp to establish the management secure channel between them, if you have a firewall in between then you should allow the traffic from both sides on that port. Also, I would recommend checking the actual time that has synch'ed on both the FMC and FTD, sometimes you might configure the NTP server but the device won't synch up for some reason. Also, please take a look at this post of mine of how to add the FTD to FMC for reference:

Add FTD to FMC | Blue Network Security (bluenetsec.com)

Marvin Rhoads
Hall of Fame
Hall of Fame

Can you share the output of "show managers" on the FTD?

Also, on FTD go into expert mode and change to root user then try telnet to FMC on port 8305. Do that same check on the FMC side towards the FTD.

BmfL
Level 1
Level 1

Despite you already answer some of this questions it does not hurt to recheck it:

Double check that you have TCP port 8305 open between the two devices / appliances

In addition, you might want to check if the the FTD is behind a NAT device (in such a case configuration / registration is slightly different).

In addion, take a look into the following Cisco document and you will be fine for sure:

https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/215540-configure-verify-and-troubleshoot-firep.html

Review Cisco Networking for a $25 gift card