07-18-2023 06:24 AM
ASA with FirePower had a "fail open/close" setting to control access in case of SFR module failure. From what I can tell, with an FTD device the IPS function is integrated into the firewall (LINA?) so is this setting NA in the FTD environment?
Thanks,
Diego
Solved! Go to Solution.
07-19-2023 07:23 AM
It is mostly not applicable with the exception of the optional network module that is available for some models that offers fail-to-wire capability. Very few customers opt for those since they are quite expensive and only available for appliance that offer a network module expansion slot.
07-19-2023 07:23 AM
It is mostly not applicable with the exception of the optional network module that is available for some models that offers fail-to-wire capability. Very few customers opt for those since they are quite expensive and only available for appliance that offer a network module expansion slot.
07-19-2023 07:25 AM
Yes I think you can config failed open/closed in ftd
Check link above
07-19-2023 07:29 AM
Note the IPS-only mode for which you can do Snort fail open in software is not the mode 98% of customers are running.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide