12-04-2019 07:30 AM - edited 02-21-2020 09:44 AM
Hi Team,
I am trying to configure the SSH timeout for FTD. I see an option of Console Timeout under Device-->Platform Setting-->Timeout(Global). Is SSH and Console timeout in FTD are same? Also, I did the set 6 min as console output and did a save and deploy but if I run a command show running-config console timeout I still see 0 here, am I missing anything in there.
12-04-2019 10:39 PM - edited 12-04-2019 10:39 PM
Hi there-
SSH Timeouts are configured in:
Devices > Platform Settings > Secure Shell
Console Timeouts are configured in:
Devices > Platform Settings > Timeouts > Console Timeout
To verify the console timeouts, you will need to connect to the FXOS CLI since FXOS where the console "lives." This can vary based on the hardware that you are using. For instance, for Firepower 1K/2K you can verify this by:
Connecting to the console port (Or SSH to the box and then issue "connect FXOS") > scope security > scope default-auth > show detail
I hope this helps!
Thank you for rating helpful posts!
12-05-2019 12:50 AM
Hi @nspasov,
Thank you for the quick response. I have an ASA Series device so I am unable to run connect command from FTD CLI. Below are the details for my VM :
Model: Cisco Firepower Threat Defense for VMWare (75) Version 6.2.3 (Build 20)
Cisco Adaptive Security Appliance Software Version 9.9(1)52
Firepower Extensible Operating System Version 2.3(1.54)
Hardware: ASAv, 8192 MB RAM, CPU Xeon E5 series 2197 MHz, 1 CPU (4 cores)
Model Id: ASAv30
Also while configuring SSH timeout if I navigate to Devices > Platform Settings > Secure Shell, I only see the option to add an SSH host, I don't see the option to select the SSH version or timeout as shown below :
For Console timeout, I configured it via Devices > Platform Settings > Timeouts > Console Timeout, but if I am trying to see the console output in the FTD CLI, I still se 0 in the running-config as shown below :
12-09-2019 04:52 AM
Hi Team,
Any update will be really appreciated.
01-20-2020 06:19 PM
Excerpt from a ticket on a similar issue, may be relevant:
Problem Description: As per the case notes, Altering console timeout value via FMC does not change Lina configuration.
Action Plan:
https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvo35782/?rfs=iqvred
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide