Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello all,
I have set up an asa Cluster with 2 ASA 5585-X with FirePower HW modules, The cluster mode is Individual interfaces and I set 2 routes per zone to distribute trafic with equal cost. I set an interface 10 GE as the CCL interface expecteing ...
Hello,
When I try to reimage the Appliance NGIPS Firepower 7050 from 5.4 to 6.1 the reimaging fail at the second pass of installing the software with the error (screenshot attached):
# unable to install ▮▮▮▮▮▮▮▮▮▮▮▮▮▮▮▮▮▮▮▮▮▮▮▮
# chmod: /mnt/var/tmp:...
Hello community,
I would like to know if It is possible to restore the only Certificate Server Authority on another router if the original router acting as the certificate Authority is damaged, and we have already the backup of the .pem, .crl and .s...
Hello,
I am facing a problem in configuring the firepower hardware module on a cisco ASA 5585-X. When I try to access the sfr module console I enter the default login and password (admin/Sourcefire) then I am asked for a new password and confirming i...
Hi all,
I would like to have some clarifications about the working of GetVPN, especially I would like to know if the intermediate GMs participate in crypting/decrypting the trafic or they just route the trafic based on the IP header which is copied a...
The solution is to reimage with the version 6.0.0 (Sourcefire_3D_Device_S3-6.0.0-1005-Restore.iso)
And to continue to the version 6.1.x with the Upgrades through FirePower Management Center ( Sourcefire_3D_Device_S3_Patch-6.0.1-29.sh > Sourcefire_...
Thank you Marvin for the reply,
Yes, I tried with the 6.1 version (Sourcefire_3D_Device_S3-6.1.0-330-Restore.iso) but it didn't work.
And Finally I tested with the version 6.0 (Sourcefire_3D_Device_S3-6.0.0-1005-Restore.iso) and It success.
It seems ...
Hi Ankita,
You are right, Cisco TAC told me that some of the images that were pre-installed in the manufacturing process were corrupted and can cause issues like this. The best way to fix them permanently is to perform a reimaging of the module soft...
Thank you Philip for the reply, We need spoke-to-spoke to avoid the load on Hub routers, I am trying to migrate to a single Hierarchical DMVPN Design by integrating the HQ Router as a Central Hub, but the problem is that the routing is established by...
Hi Jahanzeb,
- Did you set a native vlan?
// switchport trunk native vlan <Vlan-id>
Example:
interface GigabitEthernet<int> switchport mode trunk switchport trunk encapsulation dot1q switchport trunk native vlan <Vlan-id> no sh
Regards.