cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1813
Views
0
Helpful
7
Replies

Certificate for ASA FirePOWER module not found

jupcott
Level 1
Level 1

Hi All

I have attached an image of an error I am getting on ASDM, which is preventing me from managing/confuring the in built Firepower module on my Cisco ASA 5506X.

I have followed Cisco's step by step instructions like for like, however I still get this message. Does anyone have a solution or recommendation?

I am running the following software verisons:

Cisco ASA 5506

ASA Version: 9.6(1)

ASDM Version: 7.6(1)

Java: Version 8 Update 131

Cheers

James

7 Replies 7

Marvin Rhoads
Hall of Fame
Hall of Fame

I haven't seen that error before. What version of FirePOWER are you running?

Can you also share your Java Control Panel settings for security (both the Security tab and Advanced security settings)?

Hi Marvin

Please see attached file. It contains FirePower version and my Java settings.

I have IP connectivity between FirePOWER and the ASA so I know they can definitely see each other.

Do I require a later boot image for FirePOWER 6.0 or later?

When I show the dir on the ASA I have no boot image for firepower, might this be the issue?

Regards

James

Once the module has been bootstrapped, the boot image is no longer needed on the ASA flash disk.

Re Java, I was asking specifically about the following two screens. Please check them also.

My Java settings match yours displayed like for like.

Cheers

James

Hmm - that's odd. I've never seen it do that with ASDM.

Can you confirm that your "show module sfr detail" indicates all is well with the module?

If it's new, I would just go ahead and re-image with FirePOWER 6.2 and see if everything clears up after that.

The show module sfr detail shows all is well withg the module.

However now I get an error saying ASDM is unable to see the module, however when logged into ASDM I can ping the module and see it in the arp entries.

It seems extreamly painful to get this module working as I have the most up to date verisons of ASDM, Java, and ASA software.

I may need to raise a TAC case with Cisco for this as there seems no logic to why this isn't working

Yes - TAC is your best course at this point.

I have done a handful of ASDM-managed modules (and several dozen FMC-managed) but have never seen this partiucular issue.

Review Cisco Networking for a $25 gift card