Loading...
Loading...
When deploying into and FTD managed by FMC, the deployment fails at 83% due to configuration errors. When the transcript is verified, the following line appears: Durango >> [error] : Config Error -- access-group CSM_FW_ACL_ global When the current Lina configuration is checked on FTD, FDM named ACLs are found: access-group NGFW_ONBOX_ACL global access-list NGFW_ONBOX_ACL remark rule-id 268435457: ACCESS POLICY: NGFW_Access_Policy access-list NGFW_ONBOX_ACL remark rule-id 268435457: L5 RULE: Inside_Outside_Rule access-list NGFW_ONBOX_ACL advanced trust object-group |acSvcg-268435457 ifc inside any ifc outside any rule-id 268435457 event-log both access-list NGFW_ONBOX_ACL remark rule-id 1: ACCESS POLICY: NGFW_Access_Policy access-list NGFW_ONBOX_ACL remark rule-id 1: L5 RULE: DefaultActionRule access-list NGFW_ONBOX_ACL advanced deny ip any any rule-id 1
FTD managed by FMC that was previously managed by FDM.
Issue is resolved by manually removing the incorrect ACL and replacing with a dummy ACL with the correct name. Contact TAC to apply the workaround.
Click on a version to see all relevant bugs
Cisco Integration
Learn more about where this data comes from
BugZero Plan
Streamline upgrades with automated vendor bug scrubs
BugZero Prevent
Wish you caught this bug sooner? Get proactive today.