FMC complains about an FTD with High Unmanaged Disk Usage. In this instance the /ngfw was consuming 100% of its allocated disk space causing it to lose connectivity to the FMC as well as the device was unreachable on SSH. Associated with bug ID...
Does anyone know if and where there are NAT log files on the FTD? I have been going through most of the log files in expert mode but have not been able to find anything related to NAT yet. @Marvin Rhoads @MHM Cisco World @Rob Ingram @Sheraz.Salim H...
Symptoms
Recurring Rule Update Imports is enabled with policy deploy under Updates > Rule Updates. If the SRU update is not successfully pushed from the FMC to the FTDs there will be a version mismatch and deployments start failing.
Diagnosis
De...
Could you let us know your logging configuration that you have for both the 6.6 and 7.0 FTDs as well as what you are logging (i.e. beginning of connection, end of connection, or both.)
How are you managing the FTD? Via FMC or FDM?
You could look into using Flexconfig to add the Cisco ASA CLI commands to the FTD. Though I have never tried it this should do what you are looking for.
arp outside 1.2.3.4 1111.2222.3333
How are you managing the FTD? are you using FMC or FDM?
could you also explain the use-case for this. Normally you would be setting the static ARP on a switch and the FTD would be learning this dynamically from the switch.
Then the solution I provided in my previous post is correct. The interfaces on the FTD can be in the same security zone but you still need to allow communication between the networks in access rules.
Providing network diagrams of how the network is now and what you are trying to achieve will help us understand the situation better.
That being said, You can add the VLAN 130 and 140 to sub-interfaces on the FTD3105 and both of these can be members ...