cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
483
Views
5
Helpful
2
Replies

FMC/FTD synchronisation issue

nareshgatta1986
Level 1
Level 1

HI

i have deployed FMC and FTD but they not syncing. they are able to ping each other and version is 7.0 on both. Please help me in troubleshooting. Thanks

2 Replies 2

@nareshgatta1986 has the FTD been registered to the FMC and this has just stopped working?

From the CLI of the FTD enter expert mode, then enter the command sudo tail -f /ngfw/var/logs/messages and review the logs to determine what issue there is. Provide the output if you want us to review.

Run a packet capture to confirm communication between the FMC and the FTD.

 

RachelGomez161999
Spotlight
Spotlight

Troubleshooting
Problems encountered during Policy Deployment may be due but not limited to the following reasons:

Misconfiguration
Communication between FMC and FTD
Database and System health
Software defects and Caveats
Other Unique situations
Some of these issues may be easily fixed, while others may require assistance from the Cisco Technical Assistance Center (TAC).

The goal of this section is to provide troubleshooting tools and techniques to isolate the issue or determine the root cause.

FMC Graphical User Interface (GUI) Troubleshooting
Cisco recommends each troubleshooting session for deployment failures to start on the FMC appliance.

On the failure notification window, on all versions beyond 6.2.3, there are additional troubleshooting tools that can assist with the failures that you may face.

Utilizing The Deployment Transcripts
Step 1. Pull up the Deployments list on the FMC Web UI.

Step 2. While the Deployments tab is selected, select the "Show History" option.

Step 3. Inside the Deployment History box, you can see all previous deployments from your FMC. Select the deployment in which you would like to see more data.

Step 4. Once a deployment element is selected, you are taken to the Deployment Details selection which shows a list of all devices inside the Transaction. These entries are broken down into the following columns: Device Number, Device Name, Status, and Transcript.

Step 5. You can select the device in question and click on the transcript option to see the individual deployment transcript which can inform you of failures as well as configurations that are placed on the managed devices.

Step 6. This transcript can designate certain failure conditions as well as indicate a very important number for the next step: Transaction ID.

Step 7. In a Firepower Deployment, the Transaction ID is what can be used to track each individual section of a policy deployment. With this, on the Command-Line of the Device, you can obtain a more in-depth version of this data for troubleshooting and analysis.

This may help you,

Rachel Gomez

Review Cisco Networking for a $25 gift card