Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I'm trying to setup netflow export on my Check Point firewall to my Stealthwatch flow collector, but it seems that the data isn't being accepted because the exported records are missing the mandatory "ipv4 tos" key value. I used https://configurenet...
After upgrading FMC from 6.2.2 to 6.2.3, we seem to have lost access to the API Explorer. Expected behavior is a 200 response code when valid admin-level account/password combination is specified.
The configuration option in System --> Configuratio...
I'm trying to install a remote FMC1000-K9 appliance using the cli to configure it.
Launching the java-based KVM from the LOM connection (which was brought up with DHCP), I login as admin, and run:
sudo /usr/local/sf/bin/configure-network
then I a...
Kind of a combined performance specs & hardware question here.The specs say that a Cisco Catalyst 6500 Series/7600 Series ASA Services Module can do a maximum of 2 Gbps of 3DES/AES VPN traffic and 16 Gb/s max of multiprotocol traffic throughput. But...
I'm having trouble installing CSM 2.0 on a Windows 8 computer. I tried running the normal setup script, and that failed, so I tried running it manually at the command line, and it fails with the same error but a little more debugging information (se...
Thanks for the attempt, but those links just show how to turn on NetFlow. The essence of my question has to do with the fact that AFTER successfully turning it on, I found that the flow template they're using is incompatible with Stealthwatch. Is the...
When the documentation shows "{ web-cache | service number }" that means you can enter either "web-cache" or any of the service numbers (which are in the range of <0-254>, as you can see in the snip from the interactive help below).
LAB-C9300-48U-E...
We missed something.At the same time as the upgrade, the certificate for the FMC was updated to a new RSA certificate from our enterprise PKI with a 4096-bit strength key. It turns out that the web interface works fine with this longer key, but the ...
If you're in the mood to risk it, I'd be curious if you lose API access after restoring a 6.2.3-60 backup onto a freshly imaged 6.2.3-83 (or later). We do have a TAC case open that may give us more information soon, and I'll post what we learn once t...
So, I've confirmed that the REST API works on a fresh install of 6.2.3-83, but we lose access to it after restoring a backup that was taken on 6.2.3-79. Still looking for a resolution, but that seems to narrow it down quite a bit. It's not the FMC c...