cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1478
Views
0
Helpful
3
Replies

Cisco ASA Firepower v6 Bugs

Arafat Bique
Level 1
Level 1

After Upgrade Firepower from version 5 to 6 too many problems. I suggest who wants to upgrade to version 6 to wait until some minor update release. Some problems:

1. Snort crash if SMB File analysis is enabled;

2. Even if you disable inspect on ASA (tested on ASA version 9.5.2), you need to reload ASA, cause the blocking packets still appear on ASA. Only after reload ASA it back to normal operation;

3. Exception Rules over IPS sometimes send RST action to ASA;

I know that crash of Snort some clients are also suffering.

Be aware, read before Upgrade to version 6.

Regards,

3 Replies 3

osiega001
Level 1
Level 1

Noticed, the same and in my case it got even worse,

After playing with Trust rules for SMB (with logging) i noticed that nothing is logged anymore for SMB and Removing the rules again, restart sfr, restart asa, it all didn't help...

This product was released too soon.

yogdhanu
Cisco Employee
Cisco Employee

There is a known issue for SMB traffic.

https://tools.cisco.com/bugsearch/bug/CSCux49653/?reffering_site=dumpcr

Dusan Vuckovic
Level 1
Level 1

On 5512-X and apparently (according to TAC agent) in some virtual versions there's an error during boot mentioning SSE4 CPU command set (different command set in virtual machine , but error still in the same place) . 

If I manage to catch actual error I'll post it . Anyway, TAC confirmed they are working on it . 

Review Cisco Networking for a $25 gift card