Features for Firepower Management Center Deployments
Note |
Version 6.6.0/6.6.x is the last release to support the Cisco Firepower User Agent software as an identity source. You cannot upgrade a Firepower Management Center with user agent configurations to Version 6.7.0+. You should switch to Cisco Identity Services Engine/Passive Identity Connector (ISE/ISE-PIC). This will also allow you to take advantage of features that are not available with the user agent. To convert your license, contact your Cisco representative or partner contact. For more information, see the End-of-Life and End-of-Support for the Cisco Firepower User Agent announcement and the Firepower User Identity: Migrating from User Agent to Identity Services Engine TechNote. |
New Features in FMC Version 6.5.0 Patches
Feature |
Description |
---|---|
Version 6.5.0.5 Default HTTPS server certificates |
Upgrade impact. Unless the FMC's current default HTTPS server certificate already has an 800-day lifespan, upgrading to Version 6.5.0.5+ renews the certificate, which now expires 800 days from the date of the upgrade. All future renewals have an 800 day lifespan. Your old certificate was set to expire depending on when it was generated, as follows:
|
Deprecated Features in FMC Version 6.5.0 Patches
Feature |
Upgrade Impact |
Description |
||
---|---|---|---|---|
Version 6.5.0.2 Egress optimization |
Patching turns off egress optimization processing. |
To mitigate CSCvq34340, patching Firepower Threat Defense to Version 6.5.0.2+ turns off egress optimization processing. This happens regardless of whether the egress optimization feature is enabled or disabled.
For more information, see the software advisory: FTD traffic outage due to 9344 block size depletion caused by the egress optimization feature. |