Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi Guys, I hope you are doing fine. I have a question regarding Logging configuration in FTD. As you may have observed, in Policy section there are two possibilities where you can edit Loggings:1- Policy > Access Control > Logging2- In each specific ...
Hi Guys. I hope you are doing fine. As you have may read the title, we have 2 IPsec (IKEv2) tunnels to one endpoint which is located in Azure. Our infrastructure is as follow:- We have 2 ISPs. With 2 static routes, priority and IP SLA we direct traff...
Hi guys, I hope you are doing well. I have a question regarding FTD devices' internal certificate. We have FTDs which are being managed by a FMC. As far as I understood, FMC talks to the FTDs over an encrypted (Https) channel when it wants to deploy ...
Hey guys, I hope you are doing well. I have problem understanding how redundancy works in an H.A. (Active/Standby) FTD when it comes to IPSec tunnels. To clarify more:- Our office is connected to 2 ISPs. We created two IPSec tunnels, each one of them...
Hi guys, I hope you are doing well. Our infrastructure is now being audited by a third-party company. We have 6 FTDs in our infrastructure and they examined only one of them with a "Slowloris" or "Slow Http" vulnerability and not the other ones. All ...
Dear @balaji.bandi Thanks for your explanation. Correct me if I am wrong; If we configure logging in the general page of ACP, it will be applied to all rules until we change logging configuration on a specific rule? Best,Peyman
also for me, It is not the expected behavior for the FTD devices to listen on 443 on management port! We are using:Hardware FTDs, Series 2110, Software version 6.6.1Virtual FMC, Software version 6.6.1
Dear @Marvin Rhoads Thanks for your answer. Regarding your questions:- We are not utilizing neither "REST-API" nor "TS-Agent"- The auditors ran their tests and found that from their machine they can see that the 443 port on FTD is open and listening...