<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic anyconnect URL redirection issue in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/anyconnect-url-redirection-issue/m-p/4921414#M1104147</link>
    <description>&lt;P&gt;on it we have SSL VPN access configured. This therefore enables the ability to ‘browse’ to the outside of the firewall.&lt;/P&gt;&lt;P&gt;This in itself isn’t a problem, but what is a problem is that browsing to a random URL that is invalid sees the firewall redirect to an error page as opposed to returning a 404. This is causing PCI scans to fail.&lt;/P&gt;&lt;P&gt;For example, navigating to https://X.X.X.X/HiBtInet will see you redirected to https://X.X.X.X/+CSCOE+/message.html?mc=2&lt;/P&gt;&lt;P&gt;We would like to adjust the behavior of the firewall such that it doesn’t redirect but rather just 404s; this, you would perhaps think, would be default behavior given past DoS and path traversal vulnerabilities made possible by being able to browse on the outside.&lt;/P&gt;&lt;P&gt;I’ve attached the show tech output. We’ve tried implementing the following (we tried switching to 404) without any luck:&lt;/P&gt;&lt;P&gt;&amp;nbsp;sh run webvpn | inc portal|keep&lt;BR /&gt;portal-access-rule 1 deny code 403 any&lt;BR /&gt;keepout "Denied"&lt;/P&gt;&lt;P&gt;Any questions please let me know.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Sep 2023 12:56:14 GMT</pubDate>
    <dc:creator>Rock29</dc:creator>
    <dc:date>2023-09-11T12:56:14Z</dc:date>
    <item>
      <title>anyconnect URL redirection issue</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-url-redirection-issue/m-p/4921414#M1104147</link>
      <description>&lt;P&gt;on it we have SSL VPN access configured. This therefore enables the ability to ‘browse’ to the outside of the firewall.&lt;/P&gt;&lt;P&gt;This in itself isn’t a problem, but what is a problem is that browsing to a random URL that is invalid sees the firewall redirect to an error page as opposed to returning a 404. This is causing PCI scans to fail.&lt;/P&gt;&lt;P&gt;For example, navigating to https://X.X.X.X/HiBtInet will see you redirected to https://X.X.X.X/+CSCOE+/message.html?mc=2&lt;/P&gt;&lt;P&gt;We would like to adjust the behavior of the firewall such that it doesn’t redirect but rather just 404s; this, you would perhaps think, would be default behavior given past DoS and path traversal vulnerabilities made possible by being able to browse on the outside.&lt;/P&gt;&lt;P&gt;I’ve attached the show tech output. We’ve tried implementing the following (we tried switching to 404) without any luck:&lt;/P&gt;&lt;P&gt;&amp;nbsp;sh run webvpn | inc portal|keep&lt;BR /&gt;portal-access-rule 1 deny code 403 any&lt;BR /&gt;keepout "Denied"&lt;/P&gt;&lt;P&gt;Any questions please let me know.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Sep 2023 12:56:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-url-redirection-issue/m-p/4921414#M1104147</guid>
      <dc:creator>Rock29</dc:creator>
      <dc:date>2023-09-11T12:56:14Z</dc:date>
    </item>
    <item>
      <title>Re: anyconnect URL redirection issue</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-url-redirection-issue/m-p/4925830#M1104383</link>
      <description>&lt;P&gt;I'm also seeing this issue &amp;amp; its undesired redirects. It does seem like a big security threat.&lt;/P&gt;&lt;P&gt;We're on an ASA 5508 with software version 9.16(4)14.&lt;/P&gt;&lt;P&gt;I've tried code 403, 404 and 204 without success. The big issue is this redirect is causing us to fail on a PCI scan &amp;amp; there doesn't seem to be a fix for it.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Sep 2023 14:41:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-url-redirection-issue/m-p/4925830#M1104383</guid>
      <dc:creator>amaradino</dc:creator>
      <dc:date>2023-09-19T14:41:28Z</dc:date>
    </item>
  </channel>
</rss>

