12-11-2018 03:06 AM - edited 03-12-2019 07:09 AM
Hello,
I use Cisco ASA 5516-X with Firepower.
After upgrade to Firepower Service 6.3.0 my Cisco Firepower Agent for AD can not connect to Firepower Services.
6.2.x - work perfect.
Error : Report login information from localhost to x.x.x.x failed after xx/xx/2018 xx:xx:xx PM. [The handshake failed due to an unexpected packet format.]."
This is very like this bug :
Version firepower: 6.3.0-83
Version User Agent: 2.3.10 (on Windows 2019 Server)
Need help.
12-11-2018 08:09 PM
I upgraded my FMC to 6.3 and it is continuing to work OK with User Agent 2.3 on Windows server 2018.
I'd recommend doing a packet capture between the host running User agent and FMC and getting more detail on why the handshake is failing.
You can open a TAC case but they may tell you that Server 2019 is not officially supported for User Agent. You can always run the agent on a separate system and still point it to your Server 2019 (for the user-ip mapping) and FMC (for the reporting)
12-11-2018 11:31 PM
12-12-2018 12:04 AM
That's odd. My FMC 6.3 was also an upgrade from 6.2.3.7. The behavior of User Agent didn't change at all for me.
12-12-2018 12:20 AM
I will try to clean install and tell about results.
12-12-2018 03:01 AM
Clear install 6.3.0 - the same error. I think this is bug.
12-13-2018 03:01 AM
Are you by chance using EC certificates on your FMC? If so, this bug may also apply:
https://quickview.cloudapps.cisco.com/quickview/bug/CSCvn10754
12-13-2018 03:08 AM
I do not use FMC. I use Firepower Services on ASA 5516-x.
12-13-2018 03:18 AM
OK, understood.
I'd definitely open a TAC case if you believe you are hitting a bug. It helps prioritize the fix.
12-13-2018 03:55 AM
Yes. Rollback to 6.2.3.7. All work perfect.
02-22-2019 01:07 PM
6.3.0.1 - the same error.
Somebody cab fix that? WTF?
02-23-2019 12:42 AM
01-04-2021 03:54 PM
Hi Experts
Do you know if Firepower User Agent 2.3 or 2.4 can query to Active Directory running on windows server 2019?
Thanks
02-23-2019 11:07 AM - edited 02-26-2019 01:37 AM
Firepower Agent Use Mysql 5.6 library. Furepower Services use Mariadb 10.2.
Something not compatible. I think agent must be change for work with Mariadb .
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide