cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3406
Views
1
Helpful
0
Replies

Downgrade Cisco Firepower Threat Defense (FTD) on ASA 5500-X

Wong Chen Meng
Level 1
Level 1

Generally, there are well documented steps to reimage ASA to run FTD (or vice versa), example :

 

https://www.cisco.com/c/en/us/td/docs/security/firepower/quick_start/reimage/asa-ftd-reimage.html

 

However, if you already have an existing ASA 5500-X running FTD but intend to go for a downgrade (i.e. from ver 6.2.3 back to ver 6.1.0) so that it is compatible with an older version of FMC, how do you go about a downgrade of such?

 

 

I have not validated but I trust that for an existing (or one that we order from Cisco) ASA 5500-x FTD, its FTD boot image should already be present, and with that, I suppose we can avoid the hassle of breaking into ROMMON to initiate download for a fresh boot image which subsequently boot to its CLI where we could install new FTD image.

 

So the idea to achieve that. ---->  Boot into the FTD boot OS (boot CLI prompt) to install the new image.

 

But here are the my questions (based on the "assumption" that Boot Image download is not required): 

  1.  After interrupting boot process to break into ROMMON, is it possible to reload/boot into FTD boot CLI without having to download (via TFTP) a new boot image?
  2. Or even better, is there a way to boot straight into FTD boot CLI without having to break into ROMMON in the first place?

Appreciate any help or guiding info, thanks in advance!

 

0 Replies 0
Review Cisco Networking for a $25 gift card