cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
623
Views
0
Helpful
4
Comments

So I was trying to configure SNMP for my 5508x Firepower module and I used the wrong ACLs and now I am unable to view my Firepower in my ASDM. I can log into the firepower module via the session sfr command in the CLI. Can anyone tell me how to fix this?

4 Comments
balaji.bandi
Hall of Fame
Hall of Fame

yes you can connect to ASA from there you can connect to SFR module using session :

 

here is the reference guide :

 

https://www.cisco.com/c/en/us/td/docs/security/asa/asa93/configuration/firewall/asa-firewall-cli/modules-sfr.html

I went through the reference guide and I am not seeing a way to remove the ACL for SNMP

balaji.bandi
Hall of Fame
Hall of Fame

i have suggested how you can connect to SFR, Since this your environment you have all control over the config on ASA and SFR, we do not have any visibility.

 

SFR is IPS only, how you router traffic via IPS, using your ASA - so check what you have changed back and lost connection.

remove that ACL in ASA so your management can be contacted back as expected.

 

 

 

 

so to fix this I had to go into the expert mode in the firepower. Every time I upgrade my Firepower I lose connectivity and then I have to log into the expert mode in the firepower module via CLI and modify a setting in there.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: