<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ssh config in ASA in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ssh-config-in-asa/m-p/3009262#M145580</link>
    <description>&lt;P&gt;I have mentioned the ASA firewall config .. I want configure SSH only for the below interface..&amp;nbsp; &lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;interface Port-channel10&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;lacp max-bundle 8&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;nameif ASA-OUT&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;security-level 0&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;ip address 10.246.17.145 255.255.255.248 standby 10.246.17.146&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;Please do the needful..&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Configuration:&lt;/P&gt;
&lt;P&gt;---------------&lt;/P&gt;
&lt;P&gt;Hardware:&amp;nbsp;&amp;nbsp; ASA5525, 8192 MB RAM, CPU Lynnfield 2394 MHz, 1 CPU (4 cores)&lt;BR /&gt;:&lt;BR /&gt;ASA Version 9.4(4)2 &lt;BR /&gt;!&lt;BR /&gt;hostname citpl-dc-fw01a&lt;BR /&gt;enable password LmPAkL7AVu3jAHq3 encrypted&lt;BR /&gt;names&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;&amp;nbsp;description *** Dcsw1-port 47 ***&lt;BR /&gt;&amp;nbsp;channel-group 40 mode active&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt;&amp;nbsp;description *** Dcsw2-port 47 ***&lt;BR /&gt;&amp;nbsp;channel-group 40 mode active&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt;&amp;nbsp;channel-group 10 mode active&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/3&lt;BR /&gt;&amp;nbsp;channel-group 10 mode active&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/4&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/5&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface GigabitEthernet0/6&lt;BR /&gt;&amp;nbsp;channel-group 42 mode active&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/7&lt;BR /&gt;&amp;nbsp;channel-group 42 mode active&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;&amp;nbsp;management-only&lt;BR /&gt;&amp;nbsp;nameif management&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Port-channel10&lt;BR /&gt;&amp;nbsp;lacp max-bundle 8&lt;BR /&gt;&amp;nbsp;nameif ASA-OUT&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 10.246.17.145 255.255.255.248 standby 10.246.17.146 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40&lt;BR /&gt;&amp;nbsp;lacp max-bundle 8&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface Port-channel40.31&lt;BR /&gt;&amp;nbsp;description ** Hardware Manageemnt **&lt;BR /&gt;&amp;nbsp;vlan 31&lt;BR /&gt;&amp;nbsp;nameif HARDWARE-MGMT&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.246.17.1 255.255.255.192 standby 10.246.17.2 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40.50&lt;BR /&gt;&amp;nbsp;description ** TOS-APP Server **&lt;BR /&gt;&amp;nbsp;vlan 50&lt;BR /&gt;&amp;nbsp;nameif TOS-APP&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.246.19.1 255.255.255.224 standby 10.246.19.2 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40.51&lt;BR /&gt;&amp;nbsp;description ** TOS-DB Server **&lt;BR /&gt;&amp;nbsp;vlan 51&lt;BR /&gt;&amp;nbsp;nameif TOS-DB&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.246.19.33 255.255.255.224 standby 10.246.19.34 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40.52&lt;BR /&gt;&amp;nbsp;description ** CORP-APP Server **&lt;BR /&gt;&amp;nbsp;vlan 52&lt;BR /&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;&amp;nbsp;nameif CORP-APP&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.246.19.65 255.255.255.224 standby 10.246.19.66 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40.53&lt;BR /&gt;&amp;nbsp;description ** TEST-TOS Server **&lt;BR /&gt;&amp;nbsp;vlan 53&lt;BR /&gt;&amp;nbsp;nameif TEST-TOS&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.246.19.145 255.255.255.248 standby 10.246.19.146 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40.54&lt;BR /&gt;&amp;nbsp;description **Vmotion **&lt;BR /&gt;&amp;nbsp;vlan 54&lt;BR /&gt;&amp;nbsp;nameif VMotion&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 192.168.1.1 255.255.255.0 standby 192.168.1.2 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40.55&lt;BR /&gt;&amp;nbsp;description ** HOST-MGMT Server **&lt;BR /&gt;&amp;nbsp;vlan 55&lt;BR /&gt;&amp;nbsp;nameif HOST-MGMT&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.246.19.161 255.255.255.240 standby 10.246.19.162 &lt;BR /&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface Port-channel42&lt;BR /&gt;&amp;nbsp;description LAN/STATE Failover Interface&lt;BR /&gt;&amp;nbsp;lacp max-bundle 8&lt;BR /&gt;!&lt;BR /&gt;interface Port-channel48&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 09:06:28 GMT</pubDate>
    <dc:creator>Muthukumar P</dc:creator>
    <dc:date>2019-03-12T09:06:28Z</dc:date>
    <item>
      <title>ssh config in ASA</title>
      <link>https://community.cisco.com/t5/network-security/ssh-config-in-asa/m-p/3009262#M145580</link>
      <description>&lt;P&gt;I have mentioned the ASA firewall config .. I want configure SSH only for the below interface..&amp;nbsp; &lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;interface Port-channel10&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;lacp max-bundle 8&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;nameif ASA-OUT&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;security-level 0&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;ip address 10.246.17.145 255.255.255.248 standby 10.246.17.146&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif'; color: #1f497d;"&gt;Please do the needful..&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Configuration:&lt;/P&gt;
&lt;P&gt;---------------&lt;/P&gt;
&lt;P&gt;Hardware:&amp;nbsp;&amp;nbsp; ASA5525, 8192 MB RAM, CPU Lynnfield 2394 MHz, 1 CPU (4 cores)&lt;BR /&gt;:&lt;BR /&gt;ASA Version 9.4(4)2 &lt;BR /&gt;!&lt;BR /&gt;hostname citpl-dc-fw01a&lt;BR /&gt;enable password LmPAkL7AVu3jAHq3 encrypted&lt;BR /&gt;names&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;&amp;nbsp;description *** Dcsw1-port 47 ***&lt;BR /&gt;&amp;nbsp;channel-group 40 mode active&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt;&amp;nbsp;description *** Dcsw2-port 47 ***&lt;BR /&gt;&amp;nbsp;channel-group 40 mode active&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt;&amp;nbsp;channel-group 10 mode active&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/3&lt;BR /&gt;&amp;nbsp;channel-group 10 mode active&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/4&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/5&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface GigabitEthernet0/6&lt;BR /&gt;&amp;nbsp;channel-group 42 mode active&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/7&lt;BR /&gt;&amp;nbsp;channel-group 42 mode active&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;&amp;nbsp;management-only&lt;BR /&gt;&amp;nbsp;nameif management&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Port-channel10&lt;BR /&gt;&amp;nbsp;lacp max-bundle 8&lt;BR /&gt;&amp;nbsp;nameif ASA-OUT&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 10.246.17.145 255.255.255.248 standby 10.246.17.146 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40&lt;BR /&gt;&amp;nbsp;lacp max-bundle 8&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface Port-channel40.31&lt;BR /&gt;&amp;nbsp;description ** Hardware Manageemnt **&lt;BR /&gt;&amp;nbsp;vlan 31&lt;BR /&gt;&amp;nbsp;nameif HARDWARE-MGMT&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.246.17.1 255.255.255.192 standby 10.246.17.2 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40.50&lt;BR /&gt;&amp;nbsp;description ** TOS-APP Server **&lt;BR /&gt;&amp;nbsp;vlan 50&lt;BR /&gt;&amp;nbsp;nameif TOS-APP&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.246.19.1 255.255.255.224 standby 10.246.19.2 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40.51&lt;BR /&gt;&amp;nbsp;description ** TOS-DB Server **&lt;BR /&gt;&amp;nbsp;vlan 51&lt;BR /&gt;&amp;nbsp;nameif TOS-DB&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.246.19.33 255.255.255.224 standby 10.246.19.34 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40.52&lt;BR /&gt;&amp;nbsp;description ** CORP-APP Server **&lt;BR /&gt;&amp;nbsp;vlan 52&lt;BR /&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;&amp;nbsp;nameif CORP-APP&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.246.19.65 255.255.255.224 standby 10.246.19.66 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40.53&lt;BR /&gt;&amp;nbsp;description ** TEST-TOS Server **&lt;BR /&gt;&amp;nbsp;vlan 53&lt;BR /&gt;&amp;nbsp;nameif TEST-TOS&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.246.19.145 255.255.255.248 standby 10.246.19.146 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40.54&lt;BR /&gt;&amp;nbsp;description **Vmotion **&lt;BR /&gt;&amp;nbsp;vlan 54&lt;BR /&gt;&amp;nbsp;nameif VMotion&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 192.168.1.1 255.255.255.0 standby 192.168.1.2 &lt;BR /&gt;!&lt;BR /&gt;interface Port-channel40.55&lt;BR /&gt;&amp;nbsp;description ** HOST-MGMT Server **&lt;BR /&gt;&amp;nbsp;vlan 55&lt;BR /&gt;&amp;nbsp;nameif HOST-MGMT&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.246.19.161 255.255.255.240 standby 10.246.19.162 &lt;BR /&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface Port-channel42&lt;BR /&gt;&amp;nbsp;description LAN/STATE Failover Interface&lt;BR /&gt;&amp;nbsp;lacp max-bundle 8&lt;BR /&gt;!&lt;BR /&gt;interface Port-channel48&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 09:06:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ssh-config-in-asa/m-p/3009262#M145580</guid>
      <dc:creator>Muthukumar P</dc:creator>
      <dc:date>2019-03-12T09:06:28Z</dc:date>
    </item>
    <item>
      <title>Here for the general SSH</title>
      <link>https://community.cisco.com/t5/network-security/ssh-config-in-asa/m-p/3009263#M145581</link>
      <description>&lt;P&gt;Here for the general SSH-config:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportforums.cisco.com/document/12338141/guide-better-ssh-security"&gt;Guide to better SSH-Security&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;And then you allow only access from the mentioned subnet:&lt;/P&gt;
&lt;PRE class="prettyprint"&gt;ssh 10.246.17.144 255.255.255.248&amp;nbsp;ASA-OUT&lt;/PRE&gt;</description>
      <pubDate>Wed, 22 Mar 2017 20:30:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ssh-config-in-asa/m-p/3009263#M145581</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2017-03-22T20:30:13Z</dc:date>
    </item>
  </channel>
</rss>

