Updating FirePOWER Module (From ASDM)
Sep14

Updating FirePOWER Module (From ASDM)

KB ID 0001348 Dtd 14/09/17 Problem Normally I don’t like upgrading the SFR this way. But then I tend to install new firewalls set them up and walk away, so its easier (and a LOT quicker) to simply image the module to the latest version and then set it up. Like So;¬†Re-Image and Update the Cisco FirePOWER Services Module This week I had an existing customer, who has an ASA5508-X but wasn’t using his FirePOWER, I’d...

Read More
Cisco Error ‘%PHY-4-SFP_NOT_SUPPORTED’
Sep13

Cisco Error ‘%PHY-4-SFP_NOT_SUPPORTED’

KB ID 0001347 Dtd 13/09/17 Problem This is another question I see getting asked a lot in forums! You see something like the following; 000032: *Sep 28 09:35:32.507 UTC: %PHY-4-SFP_NOT_SUPPORTED: The SFP in Gi3/0/50 is not supported (PNL-3750-Stack) 000033: *Sep 28 09:35:32.507 UTC: %PM-4-ERR_DISABLE: gbic-invalid error detected on Gi3/0/50, putting Gi3/0/50 in err-disable state (PNL-3750-Stack) The usual response is ‘Enable...

Read More
FirePOWER – ‘DataPlaneInterface0’ is not receiving and packets
Sep11

FirePOWER – ‘DataPlaneInterface0’ is not receiving and packets

KB ID 0001344 Dtd 11/09/17 Problem While replacing a FirePOWER Management console, I got this error; Interface Status Interface ‘DataPlaneInterface0’ is not receiving any packets ¬† Solution A look a the health monitor showed me the same thing; Firstly, common sense dictates, that this is a live firewall and traffic is actually flowing though it? In my case the traffic simply needed to be ‘sent though’ the...

Read More
Cisco FirePOWER User Agent – Use With the FirePOWER Management Console
Aug14

Cisco FirePOWER User Agent – Use With the FirePOWER Management Console

KB ID 0001179 Dtd 14/08/17 Problem FirePOWER Management Center, will give you a wealth of information on traffic/threats etc. Usually it will tell you what IP the offenders are on, but if you want to know what a USER is doing, then that means you have to look though logs see who had what IP, at what time etc. So you can install the FirePOWER User Agent on a machine, (this can be a client machine, though I usually put it on a member...

Read More
Setup RANCID and ViewVC (Part Two) Adding Cisco Devices
Jul28

Setup RANCID and ViewVC (Part Two) Adding Cisco Devices

KB ID 0001332 Dtd 23/07/17 Problem Before on Part One we setup our RANCID and ViewVC server ready to start backing up our devices, now we will look at adding the devices, and automating the backup process. Solution To add a Cisco device you need to do TWO things*. Firstly you need to add and entry in the ‘router.db‘ file that lives in the ‘Group’ folder you created back in part one. Secondly you need to add the...

Read More
Setup RANCID and ViewVC (Part One)
Jul21

Setup RANCID and ViewVC (Part One)

KB ID 0001331 Dtd 19/07/17 Problem There are couple of good posts out there on setting up Rancid (Really Awesome New Cisco Config Differ). Some even show you how to set it up with ViewVC (Formally ViewVCS, basically a nice web based GUI front end, that does version control and highlights differences). It does this using a system called CVS (Concurrent Version System, hence the original name.) Then I had to do some more searching to...

Read More