cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1282
Views
10
Helpful
3
Replies

Cisco FXOS Upgradation

NeWGuy1109
Level 1
Level 1

Hello,

 

I want to upgrade Firepower devices with FTD logical devices. Can FXOS be upgraded directly through Chasis Manager or entire set of FMC, FTD and FXOS need to be upgraded together.

 

Thanks

1 Accepted Solution

Accepted Solutions

In any upgrade case, always check both release notes and compatibility guide.

FXOS release notes: 

 https://www.cisco.com/c/en/us/td/docs/security/firepower/fxos/fxos261/release/notes/fxos261_rn.html#id_113735

...tell us:

"You can upgrade your Firepower 9300 or Firepower 4100 series security appliance to FXOS 2.6(1.157) if it is currently running any FXOS 2.0(1) or later build."

Compatibility guide:

https://www.cisco.com/c/en/us/td/docs/security/firepower/fxos/compatibility/fxos-compatibility.html

...tells us that ASA logical device 9.6(4) or later (except 9.7(x)) and Firepower Threat Defense 6.1.0 or later is compatible with FXOS 2.6(1.157)+.

The Firepower Management Center compatibility guide:

https://www.cisco.com/c/en/us/td/docs/security/firepower/compatibility/firepower-compatibility.html#reference_6DF211D8F60F423387D0316000333539

...confirms that FMC 6.2.3 is compatible with 2.3.(1.173)+.

 

So in summary it is not mandatory to upgrade either your FMC or Firepower Threat Defense releases.

However it is recommended. 6.4.0.4 is the current recommended release of both FMC and FTD.

 

View solution in original post

3 Replies 3

Marvin Rhoads
Hall of Fame
Hall of Fame

For Firepower 4100 and 9300 series, FXOS can be upgraded via the Firepower Chassis Manager. The same applies for Firepower 2100 series running ASA logical device. For 2100 series running FTD,FXOS is bundled with the FTD image and cannot be upgraded separately.

FMC is always upgraded from FMC and must be at or above the version of all managed devices. We usually upgrade managed devices FTD from FMC although it's not strictly required.

Thanks for the reply...

So is it possible to upgrade only FXOS for 4100 series and not the FMC and FTD ? Suppose i want to go to FXOS 2.6 from 2.3 but want to keep the FMC and FTD at 6.2.3.
My doubt is that is it mandatory upgrade FMC , FTD and FXOS all together in a 4100 series or i can only do with FXOS upgrade.

In any upgrade case, always check both release notes and compatibility guide.

FXOS release notes: 

 https://www.cisco.com/c/en/us/td/docs/security/firepower/fxos/fxos261/release/notes/fxos261_rn.html#id_113735

...tell us:

"You can upgrade your Firepower 9300 or Firepower 4100 series security appliance to FXOS 2.6(1.157) if it is currently running any FXOS 2.0(1) or later build."

Compatibility guide:

https://www.cisco.com/c/en/us/td/docs/security/firepower/fxos/compatibility/fxos-compatibility.html

...tells us that ASA logical device 9.6(4) or later (except 9.7(x)) and Firepower Threat Defense 6.1.0 or later is compatible with FXOS 2.6(1.157)+.

The Firepower Management Center compatibility guide:

https://www.cisco.com/c/en/us/td/docs/security/firepower/compatibility/firepower-compatibility.html#reference_6DF211D8F60F423387D0316000333539

...confirms that FMC 6.2.3 is compatible with 2.3.(1.173)+.

 

So in summary it is not mandatory to upgrade either your FMC or Firepower Threat Defense releases.

However it is recommended. 6.4.0.4 is the current recommended release of both FMC and FTD.

 

Review Cisco Networking for a $25 gift card