Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I am using an Internet connected data interfaces to manage an FTD from FMC. This is working as expected. Now I want to add a 2nd interface as a backup management interface using a data interface connected to to my internal network. The 2nd interf...
I currently have an FTD that has public DNS configured on the management interface (>show network, >show DNS system have Umbrella IPs). I have internal DNS IPs assigned to inside data interface using the platform policy. I did not check enable DNS...
I setup a site to site VPN with a pair of FTDs using the FMC VPN wizard and static VTI interfaces. Each FTD has two ISPs so I configured a backup tunnel using the 2nd set of ISPs and VTIs. I also setup BGP using the primary set of ISPs and VTIs. All...
My FTD public facing interfaces are using "front door" VRF setups and I need to enable an interface for RA VPN. From what I have found the challenge is going to be leaking my internal routes to the "front door" VRF interface. I've seen examples usi...
I am experimenting with setup of dual ISP using front door VRF. The gear is FMC/FTD 1120 running v7.6.2. As per some AI research I reconfigured my NAT setup with manual NAT rules and selected specific source and destination interfaces. However whe...
@Cristian Matei the FQDN shows up in both Host and Displayname of the "show managers" command output. I agree it does seem like the most likely series of events was that the FQDN was indeed resolvable at time of registration. This brings to mind a ...
I think the answer might be a combination of things. One of the articles that @balaji.bandi mentioned clearly states that it is possible for the FMC to initiate communication so maybe the FTD received hello packets from FMC and established the neede...
@balaji.bandi yes, DNS is working fine and the tests I ran confirm that each interface (management and data) are using the DNS servers that are assigned to them. I am simply trying to find out why the "show managers" output is not consistent with th...
update: FWIW, I setup RA using SSL and EntraID as IdP and enabled on the outside interface which is member of user defined VRF. I used static routes to leak inside networks to VRF and leaked VPN pool to global routing table and it seems to work. M...