Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I am admin of a FTD cluster in a Cloud Delivered FMC, and we are In the process of a migration process. There is over 400 vlan interfaces. We need to be able to shut/no shut them on cue from the ISP etc during the process, and in worst case revert th...
Hello experts
I have a L2L tunnel I don't seem to get started. It seems to me that Phase1 is OK, but fails immediately when trying to pass traffic and establish SA's.
We use PSK with IKEv2
I have been trying to check the configuration and it seems...
I'm testing Downloadable Access-lists on a RA-VPN setup But can't seem to get the dACL to be attached to the clients connections. I cannot seem to find a config-guide that explains to me a setup on the Firepower, or if the Firepower just is supposed ...
Hi I have a small nuisance.We run Firepower 2130 with ASA image, and have several group policies with IPv6, but for a small set of users we need to run IPv4 only. So I set up a group policy for this, but see that the ASA distributes IPv6 adresses fro...
Hi We had a software upgrade and we lost four N2K-C2232TM-10GE connected to one of our Nexus 5596UP chassis. We have redundancy for 99% so there's not an emergency but... The Fex'es is going in to a boot loob trying to do a image download. Tried on ...
Yeah... figured. But had to make a rant.....
I mean. This is a horrible horrible horrible designed gui, completely unable to do anything other than minor changes. And even that is cumbersome.
It forces you to program your own gui totally from scratch...
We got this solved in the end.
The problem was that the ACL in some way the TrafficSelector did not take effect. It showed all the right values and appeared in show commands etc, but failed to take effect when receiving traffic.
We have removed the ...
Hi
Thanks for the reply
Yes the TS_UNACCEPTABLE seems to indicate a problem with the traffic selector, but we have taken an extra check on this to double-triple-check this, and I got access to the peer config as well to compare. The ACL is as simple ...