cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1286
Views
1
Helpful
12
Replies

Cisco Firepower 1010e unable connect to internet

aarta
Level 1
Level 1

Hi All,

I recently have firepower 1010e.

with current configuration, i am able to ping and get reply from internet, but the device unable to connect to firmware update & all devices connected unable to do connect to internet.

i put the config attached.

Could you please help me?

Thankyou

1 Accepted Solution

Accepted Solutions

Hi NHM.

apprently, it fix by adding DNS to my outside port. the device is now able to connect to internet and able to update.

thankyou.

View solution in original post

12 Replies 12

nat.png

Hi MHM,

 

Thankyou for helping me out. i've follow your guide but unfortunately the problem still persist (attachment: new.stat.png)

i attached the latest condition of the firepower, hope it could point what missing from my config.

Thankyou

friend your NAT use interface inside/outside
but there is no interface called inside 
there is interface called 
inside.a 
inside.b
inside.linxus 

so you need to use these interface name in NAT otherwise it will not work. 

note:- if you to NAT traffic from these three Inside.X interface you need three NAT one for each interface 

MHM

hi MHM,

Can i use this zone as my alternatives? or should i use i zone each interface in one zone?

Thankyou

 

One zone for each interface.

MHM

it should be like this, right?

all correct except one thing 
you need to config it auto not manual NAT (check my previous comment)

thanks a lot 

MHM

Sorry, im bit confused before.

hope it doesn't bother you. should i keep this new config or delete all the manual NAT? (only keep the auto)
Thankyou.

new NAT is correct 
but please remove the OLD manual NAT. 
that it for dynamic NAT

MHM

hi NHM,

upon the testing, unfortunately i am still unable to connect to internet.

Any suspect? 

https://ccnpsecuritywannabe.blogspot.com/2019/09/configuring-ftd-623-via-firepower.html

check this link especially mgmt how it need to connect to Inside to make mgmt interface have access to Internet 
please for this point if you have any Q ask 

thanks 
MHM

Hi NHM.

apprently, it fix by adding DNS to my outside port. the device is now able to connect to internet and able to update.

thankyou.

Review Cisco Networking for a $25 gift card