- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-18-2023 06:24 AM
ASA with FirePower had a "fail open/close" setting to control access in case of SFR module failure. From what I can tell, with an FTD device the IPS function is integrated into the firewall (LINA?) so is this setting NA in the FTD environment?
Thanks,
Diego
Solved! Go to Solution.
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-19-2023 07:23 AM
It is mostly not applicable with the exception of the optional network module that is available for some models that offers fail-to-wire capability. Very few customers opt for those since they are quite expensive and only available for appliance that offer a network module expansion slot.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-19-2023 07:23 AM
It is mostly not applicable with the exception of the optional network module that is available for some models that offers fail-to-wire capability. Very few customers opt for those since they are quite expensive and only available for appliance that offer a network module expansion slot.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-19-2023 07:25 AM
Yes I think you can config failed open/closed in ftd
Check link above
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-19-2023 07:29 AM
Note the IPS-only mode for which you can do Snort fail open in software is not the mode 98% of customers are running.
