Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Good day, Running FTD code 6.7.0.2-24 on two FTD 1120s in HA (active/standby). Potential design is to have a primary IPsec tunnel connect from the FTDs to multiple sites. The secondary link is there as a backup connection in the event of failure of...
Good day, Is is possible to configure the FTD 1120 version 6.7 with dual ISP links for users with the anyconnect client to connect to the FTD using either ISP. Looking at the configurations, you can only configure one outside interface for the globa...
Good day, Has anyone done the flexconfig configurations for Dead Peer Detection (DPD) on a FTD 1120 in HA? The design idea is to have multiple sites with different vendor equipment connect to the FTD via IPsec VPN. There are 2 public IPs available t...
Good day, Requirement: Public certificate needed for use with ISE guest portal to be able to securely authenticate users outside of the enterprise. This is so that users can trust the portal page and not get certificate errors and other issues assoc...
Good day all, Currently we have deployed Cisco FMC 1600 with FTD 1020 and 2100 in HA respectively. We are running version 6.4.0.4. The FMC has been configured to sync time via NTP and is showing the correct time. The FTDs have been configured to pu...
Ahh beautiful, @Rob Ingram exactly what I wanted to see. I was going to ask for a screenshot in my last reply but i said lemme wait. Thanks for the confirmation of how it works. One more thing concerning the last part of your statement. With two ou...
Thanks Rob, didn't recognize that version 7.1 allowed you to configure that. Based on the Configuration guide, is it that when you add a remote backup peer, the configuration then allows you add another local VPN access interface in the event the ba...
The second IP address is coming from on a separate port on the ISP's CPE. Just confirmed that current setup is that they have the ISP connections going to ISR routers respectively. The ISRs are doing HSRP for the LAN side that connects to the firewa...