05-07-2025 05:19 AM
Problem:
Firewall shows it is connected to the Internet, it can sees the gateway. But, we not getting any data through.
What We've Tried:
Set up static and dynamic NATs, both before and after Auto NAT rules.
Used various zone objects and policies (network, host, IP range zones).
DNS is set up with Cisco and OpenDNS, and they're working fine.
Ping and Tracert tests both failed, even when forcing DNS by naming websites.
05-08-2025 12:30 AM
A couple things to check and answer if you could:
If you are able to ping the internet from the firewall then there is possibly an issue with configuration. In this case start by running a packet-tracer on the inside interface (the interface where client traffic is entering the firewall) and paste the results here.
Would also be good if you post the configuration for the following (remember to remove any public IP or otherwise sensitive information):
05-08-2025 09:36 AM
Thanks, Marius.
We found the problem. It seems you cannot use the object "any-ipv4" when selecting a network. We had to create an object called "inside-network" and use a specific IP range. It appears this is not documented anywhere. However, after we rebooted the firewall to ensure it comes back online, it dropped offline again, and we got kicked out of the wizard after inputting the external connection.
Now, we are unable to access FTD. We will reset and try again.
05-09-2025 12:14 PM
Now we can’t figure why the Firewall will stay up and online for a few hours then go down. It requires a full factory reset to get it back online.
05-10-2025 02:53 PM
Could you be more specific. What do you mean when you say "Firewall will stay up and online for a few hours then go down" ?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide