01-29-2021 01:23 PM
We recently migrated to a pair of 2140s and manage them with FMC. We're having random on-going problems with SIP, usually for 5 minutes or less a couple times at day at various locations. I'm not seeing any dropped packets in the connect events, and I've created a prefilter fastpath policy for this traffic. SIP is being inspected, and I was told today to make sure SIP ALG is disabled; however, I'm not sure where to do this at. I've not been able to track down documentation to do this within FMC. Can anyone point me in the right direction? Thank you.
Solved! Go to Solution.
01-29-2021 09:53 PM
You need to access firewall console then issue the following command
configure inspection sip disable
01-29-2021 09:53 PM
You need to access firewall console then issue the following command
configure inspection sip disable
02-01-2021 07:13 AM
We're using FMC, but you got me on the right track. Here is how to configure through GUI:
https://wrmem.net/index.php/2020/05/08/disable-sip-inspection-on-firepower-through-flexconfig/
02-01-2021 07:46 AM
It works either way, but with command line is much faster and straightforward
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide