Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi all,I have FTD FDM device and I want to check what I am missing on this setup. I already completed the following setup as indicated in the Cisco Docs.Link: https://www.cisco.com/c/en/us/td/docs/security/firepower/720/fdm/fptd-Software version:Cisc...
I am new to this deployment so please bear with my ignorance and I welcome to hear/know your inputs regarding the potential issues,common issues and best practices on setting up multiple site-to-site tunnels (hub and spoke) to minimize/avoid major is...
Hello @Rob Ingram you changed the mgmt port of the data interface (outside)?-- I don't fully understand this but let me clarify. We don't intend to access the FDM through outside interface but internally only. The data interface port is currently as...
Hi @MHM Cisco World ,Sorry but I don't quite understand your explanation, kindly elaborate. Currently, the management port of the firewall device is not connected to anything(disconnected) and I am managing the firewall through FDM using one of the d...
Hi @Rob Ingram Hi @Rob Ingram ,I appreciate your help. Can you actually ping the outside IP address from the internet?- I am unable to create the flexiconfig to allow ICMP. I am not sure why it is not working but I am certain that the ICMP is reachin...
Hello Rob,Yes, it is assigned with public IP address. show asp table socketProtocol Socket State Local Address Foreign AddressSSL LISTEN X.X.X.X:8443 0.0.0.0:*DTLS LISTEN X.X.X.X:443 0.0.0.0:*I did some test , I assigned the VPN to one of the interna...
@Aref Alsouqi Thank you for your inputs. The encryption domains would be the internal subnets, your local subnet and the remote subnet, usually we don't use the ISP public IP addresses as encryption domains.KBS: I understand but I read those other se...