05-05-2019 11:41 AM - edited 02-21-2020 09:06 AM
Dear Community,
I'm trying to build HA on FMCv for two ftds 2120.
The specs of the devices are:
FMCv: 6.3.0 software
FTD 2120: Cisco Firepower 2120 Threat Defense (77) Version 6.2.3.10 (Build 59)
During the HA procedure all prerequisites are met, I'm able to choose the interfaces for the failover and afterwards I get the following error:
On System-->Tasks-->: High availability configuration could not be updated on the primary device <Devices' Name>
and on
System-->Deployments:
Other logs
May 5 18:20:49 Unable to open /var/cisco/deploy/sandbox///network_analysis/snort.conf.abba00a0-cf29-425c-9d75-49699aadc898 for appending
Has anyone seen this issue before?
Thanks in advance.
Stelios
Solved! Go to Solution.
05-06-2019 02:12 AM
OK - that should definitely be supported.
Have you ever managed either FTD device before? It often helps to deploy to them first so that SRUs (Snort Rule Updates), VDB version etc. are all in sync before starting.
If that all looks good then I'd recommend opening a TAC case. They can dig deep in the logs and remedy the root cause for you.
05-05-2019 08:27 PM
FMCv does not currently support high availability.
6.3 (your version) reference:
6.4 (current latest version) reference:
05-05-2019 09:43 PM
05-06-2019 02:12 AM
OK - that should definitely be supported.
Have you ever managed either FTD device before? It often helps to deploy to them first so that SRUs (Snort Rule Updates), VDB version etc. are all in sync before starting.
If that all looks good then I'd recommend opening a TAC case. They can dig deep in the logs and remedy the root cause for you.
05-06-2019 02:16 AM
05-06-2019 02:27 AM
You're welcome. Keep us posted on the outcome.
05-06-2019 02:47 AM
05-06-2019 03:38 AM
That's great to hear.
FMC can be particular about Snort rule sets being in sync before allowing FTD or Firepower service module upgrades so I thought it might similarly object to it during creation of an HA pair.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide