Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi All,I'm having a bit of a oddity with our Zscaler clients and download speed from our local office.Clients have Zscaler Client Connector enabled with ZPA and ZIA. Download from public sites are seeing horrible download speeds, when they sit behind...
Hi AllI did a factory reset on the box, and it boot to 6.6.7 which is located on disk. After login the "Loading please wait..." times out with "application installation failed. Launching fxos console!"From ROMMON I can boot via USB into 7.0, copy the...
Hi All,We're about to re-design our AnyConnect remote access solution, moving from a pair of FTD 1140 in HA (they are a part of a branch office), to something that can provide more bandwidth to our users. It's a business requirement, so I won't argue...
Hi AllI'm looking to configure Anycast from the UmbrellaVA using ACI as fabric.But I'm unsure about the approach. I've found the guide below for Anycast services in ACI, but the Umbrella VAs is setup with a BGP Peerhttps://www.cisco.com/c/en/us/td/do...
Hi All,I need to remove our Umbrella DNS policy from the Inspection part of a Acces Control Policy.Setting the Umbrella policy to "None", the deployment fails.I'm only able to apply a different policy, but not remove it entirely.FMC >> vpn-addr-assig...
With the latest testing on the firewall, I've configured our ISP used for backup traffic as an additional outside zone. With PBR via the secondary ISP, I've tested ZS from a single client. The download speed via the secondary ISP is performing just a...
Both in our Lab and Prod we connect to the same ZS DC, CPH02, route paths are the same. There are differences in rules, but it very generic ACEs as they were lifted from an ASA on the FTD a couple of years ago. No IDS/IPS on the prod firewall for egr...
We saw this issue while updating to 7.4.2.1 -> 7.6.2 (1k series) AND 7.6.2 -> 7.6.2.1 (3k series) - after the upgrade the firewall didn't resolve FQDN for ACPs ACEs. To resolve it we did the following via the CLI, "clear dns", then "dns update".I fou...
I did a full erase of the SSDs on the device. After boot from USB, the device doesn't show "failed" and there's no pending install. Followed the re-image guide from there and on. Fixed. No TAC