<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/blacklist/m-p/2793990#M170976</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I believe you need ASDM now. WIth CLI you need to configure that way. However you could configure this with ASDM :&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa90/asdm70/configuration_guide/asdm_70_config/acl_objects.html#pgfId-1543634&lt;/P&gt;
&lt;P&gt;This explains how to configure Network object and groups through ASDM.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Akshay Rastogi&lt;/P&gt;</description>
    <pubDate>Thu, 05 Nov 2015 15:32:02 GMT</pubDate>
    <dc:creator>Akshay Rastogi</dc:creator>
    <dc:date>2015-11-05T15:32:02Z</dc:date>
    <item>
      <title>Blacklist</title>
      <link>https://community.cisco.com/t5/network-security/blacklist/m-p/2793987#M170970</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;This is my first post, so i applogise in advance if this is a stupid question. The managment at my company want me to set up a blacklist on out external facing ASA 5540. I set up a network object group the explictly denies any incomming traffic from the outside and began to add IP object to that group and everything is working fine.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;However, here is were the problem lies. My security group as asked me to add a group of IP addresses(about 600) to the blacklist ASAP, but the only way i can do it is by adding one at a time.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Does anyone know a way that i can add multiple network object (about 600) all in one go?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:50:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/blacklist/m-p/2793987#M170970</guid>
      <dc:creator>tschmidtty8666</dc:creator>
      <dc:date>2019-03-12T06:50:18Z</dc:date>
    </item>
    <item>
      <title>Hi there,</title>
      <link>https://community.cisco.com/t5/network-security/blacklist/m-p/2793988#M170972</link>
      <description>&lt;P&gt;Hi there,&lt;/P&gt;
&lt;P&gt;You could configure object network group and add host in it. Then you could call that object-group in that access-list as one entry:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/configuration/guide/config/objectgroups.html#wp1071777&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Hope that helps.&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Akshay Rastogi&lt;/P&gt;</description>
      <pubDate>Thu, 05 Nov 2015 15:10:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/blacklist/m-p/2793988#M170972</guid>
      <dc:creator>Akshay Rastogi</dc:creator>
      <dc:date>2015-11-05T15:10:04Z</dc:date>
    </item>
    <item>
      <title>That is how i have it set up,</title>
      <link>https://community.cisco.com/t5/network-security/blacklist/m-p/2793989#M170974</link>
      <description>&lt;P&gt;That is how i have it set up, but i need to figure out how to add 600 individual hosts from a spreadsheet, with out doing one at a time. &amp;nbsp;is there a way i can just copy and past all 600 into the group with out having to type "network-object host" before each one?&lt;/P&gt;</description>
      <pubDate>Thu, 05 Nov 2015 15:15:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/blacklist/m-p/2793989#M170974</guid>
      <dc:creator>tschmidtty8666</dc:creator>
      <dc:date>2015-11-05T15:15:47Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/blacklist/m-p/2793990#M170976</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I believe you need ASDM now. WIth CLI you need to configure that way. However you could configure this with ASDM :&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa90/asdm70/configuration_guide/asdm_70_config/acl_objects.html#pgfId-1543634&lt;/P&gt;
&lt;P&gt;This explains how to configure Network object and groups through ASDM.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Akshay Rastogi&lt;/P&gt;</description>
      <pubDate>Thu, 05 Nov 2015 15:32:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/blacklist/m-p/2793990#M170976</guid>
      <dc:creator>Akshay Rastogi</dc:creator>
      <dc:date>2015-11-05T15:32:02Z</dc:date>
    </item>
    <item>
      <title>I understand how to use ASDM,</title>
      <link>https://community.cisco.com/t5/network-security/blacklist/m-p/2793991#M170977</link>
      <description>&lt;P&gt;I understand how to use ASDM, what I'm asking is if there is a way to add a list of IP address all at once....instead of adding one at a time. i need to enter approx 600 (non consecutive) IP addresses to the firewall.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Nov 2015 14:39:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/blacklist/m-p/2793991#M170977</guid>
      <dc:creator>tschmidtty8666</dc:creator>
      <dc:date>2015-11-06T14:39:22Z</dc:date>
    </item>
    <item>
      <title>Hi There,</title>
      <link>https://community.cisco.com/t5/network-security/blacklist/m-p/2793992#M170978</link>
      <description>&lt;P&gt;Hi There,&lt;/P&gt;
&lt;P&gt;There is no simple way to do this. You have to manually add the IP address. only the comman value will be "&lt;SPAN&gt;network-object host".&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;But I do not understand the need of such tryp of black list. the firewall will anyway drop the packet from outside to inside becasuse of the implicit deny.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Thanks,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Shivapramod&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 06 Nov 2015 15:31:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/blacklist/m-p/2793992#M170978</guid>
      <dc:creator>Shivapramod M</dc:creator>
      <dc:date>2015-11-06T15:31:19Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/blacklist/m-p/2793993#M170980</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;All IP address to add in a single line is not possible. From ASDM you could add them through click on 'Add' to add them on the right side.&lt;/P&gt;
&lt;P&gt;However instead of adding IPs to Network object group, you could directly add entry in the existing access list with different source IP address in a single line(write ip addresses, separated by comma).&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Akshay Rastogi&lt;/P&gt;</description>
      <pubDate>Fri, 06 Nov 2015 16:09:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/blacklist/m-p/2793993#M170980</guid>
      <dc:creator>Akshay Rastogi</dc:creator>
      <dc:date>2015-11-06T16:09:54Z</dc:date>
    </item>
  </channel>
</rss>

