12-26-2015 10:37 AM - edited 03-10-2019 06:31 AM
After Upgrade Firepower from version 5 to 6 too many problems. I suggest who wants to upgrade to version 6 to wait until some minor update release. Some problems:
1. Snort crash if SMB File analysis is enabled;
2. Even if you disable inspect on ASA (tested on ASA version 9.5.2), you need to reload ASA, cause the blocking packets still appear on ASA. Only after reload ASA it back to normal operation;
3. Exception Rules over IPS sometimes send RST action to ASA;
I know that crash of Snort some clients are also suffering.
Be aware, read before Upgrade to version 6.
Regards,
01-08-2016 12:04 AM
Noticed, the same and in my case it got even worse,
After playing with Trust rules for SMB (with logging) i noticed that nothing is logged anymore for SMB and Removing the rules again, restart sfr, restart asa, it all didn't help...
This product was released too soon.
01-08-2016 12:53 AM
There is a known issue for SMB traffic.
https://tools.cisco.com/bugsearch/bug/CSCux49653/?reffering_site=dumpcr
07-05-2016 12:25 PM
On 5512-X and apparently (according to TAC agent) in some virtual versions there's an error during boot mentioning SSE4 CPU command set (different command set in virtual machine , but error still in the same place) .
If I manage to catch actual error I'll post it . Anyway, TAC confirmed they are working on it .
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide