01-17-2024 08:59 AM - edited 01-17-2024 09:03 AM
We are currently refreshing our device from EOL cisco asa 5500 series to Cisco FTD running asa image . however we see no connections when cables are moved from EOL Cisco asa 5500 to Cisco FTD 1100 . Cisco FTD is running an ASA image with 19.6 x version.
Anyone having issues with this version running on FTD ? Specifically not seeing any TCP connection coming from outside. we did a capture on the outside interface connecting to ISP link but no traffic. the Destination is AWS
01-17-2024 09:03 AM
you need to reset the connection from client or Server to build now TCP session through new FTD
MHM
01-17-2024 09:24 AM
if you can not do that manually I think you can use FMC to add ACP with black+reset which make any tcp connect reset then remove this ACL and check the connection
MHM
01-17-2024 09:29 AM
what is ACP with black+reset , any cisco document. Could you please elaborate
01-17-2024 09:33 AM
Before we do deep in this point are only tcp traffic drop or all traffic?
MHM
01-17-2024 09:37 AM
only TCP
01-17-2024 09:46 AM
Check action block+reset
Also can I ask you to double check interface up and get IP from ISP or not.
MHM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide