Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi Cisco community
We have provisioned new FMC server with different MGMT IP address. So, we need to move HA pairs of FTD that joined to old FMC to new FMC.
Is there anyway we can move them to join the new FMC without HA breaking?
Hi all FTD 6.4 Local subnet: 10.1.21.0/24, 10.1.180.0/24, 192.168.1.0/24FTD 7.0.1 Local subnet: 10.5.0.0/16 T1: On the FTD 7.0.1 as INITIATOR has made some traffic for 2 subnet and the child SA created with particular 2 subnets T2: On the FTD 6.4 as ...
I'm planning to migrate HA MX84 to HA MX100 with minimal downtime.https://documentation.meraki.com/MX/Other_Topics/MX_Cold_Swap_Replacing_an_Existing_MX_with_a_Different_MX#Method_1_(Quick_Swap)As document above, should I go for Method 2 as downtime ...
My goal is to enable Anyconnect SSL VPN on ASA with Duo MFA and also posture check on Cisco ISE. Also the user account is located at AD server and ISE internal. But I'm not sure if the Duo authentication proxy is able to do account lookup on both AD...
As I have opened the TAC case, what I got from them is when the traffic is started from one direction. we see the local source and remote destination ports as UDP 4500 as expected but when started from the peer side we see this as the local source po...
Now I have L-FPR1000-ASA license available on the smart account and did not attached to any firewall yet. So, how can I convert the license to Firepower based license without those optional licenses? In order to run the FTD
If my firewall FPR-1010 did not register to Smart account yet (fresh firewall). So I can proceed to reimage the firewall to FTD and run it with L-FPR1000-ASA license, right?
Can I use WAN IP configured on spare MX to initial firmware updates and change it to primary WAN IP after old MXes are switches off?One more thing I'm concerning is hub selection on each spoke node after creating a new clone network. Since this MX ac...
I only have 2 MXes in the network. So, I think I can go with my procedure.But I'm not sure if the IP address conflict may happen when I create the clone network. Also, how long of Site-to-Site VPN establish connection will take.