<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Yeah, I know the capture in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5505-remote-access/m-p/2740008#M178958</link>
    <description>&lt;P&gt;Yeah, I know the capture command.&lt;/P&gt;&lt;P&gt;Still not seen traffic, whereas the issue is that another device is filtering.&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;</description>
    <pubDate>Thu, 10 Sep 2015 11:08:00 GMT</pubDate>
    <dc:creator>Alfredo Bosca Bataller</dc:creator>
    <dc:date>2015-09-10T11:08:00Z</dc:date>
    <item>
      <title>ASA 5505 remote access</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-remote-access/m-p/2740004#M178954</link>
      <description>&lt;P&gt;I have configured the next to allow remote access from external IP: 217.12.X.X but is not working. The external firewall not is published, the name is: HOst_FirewallIP. The version of ASA firewall is 8.0 (4).&lt;/P&gt;&lt;P&gt;With debug SSH, I am not seeing nothing. Furthermore I have checked other firewalls is not blocking this connections.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1) name 217.12.X.X IP-217.12.X.X-Ext&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; // I have created the name&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; object-group network IP-217.12.X.X-Ext&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; network-object host IP-217.12.X.X-Ext&amp;nbsp; // I have created the HOST&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;2) Allow SSH and HTTP access&lt;/P&gt;&lt;P&gt;access-list outside_access_in extended permit tcp host IP-217.12.X.X-Ext host &amp;lt;HOst_FirewallIP&amp;gt; eq ssh&lt;/P&gt;&lt;P&gt;access-list outside_access_in extended permit tcp host IP-217.12.X.X-Ext host &amp;lt;HOst_FirewallIP&amp;gt; eq http&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;http IP-217.12.X.X-Ext 255.255.255.255 outside&lt;/P&gt;&lt;P&gt;ssh IP-217.12.X.X-Ext 255.255.255.255 outside&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance!&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:34:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-remote-access/m-p/2740004#M178954</guid>
      <dc:creator>Alfredo Bosca Bataller</dc:creator>
      <dc:date>2019-03-12T06:34:25Z</dc:date>
    </item>
    <item>
      <title>Hi,So , If i understand it</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-remote-access/m-p/2740005#M178955</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;So , If i understand it correctly , If you want to allow SSH on the ASA interface , you don't need any ACL for that be default until and unless you already have a control plane ACL configured.&lt;/P&gt;&lt;P&gt;To allow SSH on the ASA device interface , you would need these things:-&lt;/P&gt;&lt;P&gt;AAA Authentication configuration (show run aaa)&lt;/P&gt;&lt;P&gt;RSA key(show crypto key mypubkey rsa)&lt;/P&gt;&lt;P&gt;SSH configuration (show run ssh)&lt;/P&gt;&lt;P&gt;show run username&lt;/P&gt;&lt;P&gt;Also , do you have any other firewall between the host and this ASA device or is it only the iSP between them ?&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Wed, 09 Sep 2015 19:30:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-remote-access/m-p/2740005#M178955</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-09-09T19:30:19Z</dc:date>
    </item>
    <item>
      <title>Hi Vobhor,All these is</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-remote-access/m-p/2740006#M178956</link>
      <description>&lt;P&gt;Hi Vobhor,&lt;/P&gt;&lt;P&gt;All these is configured because before I was accessing from another external IP. The issue was when we changed the external IP.&lt;/P&gt;&lt;P&gt;1) AAA - OK&lt;/P&gt;&lt;P&gt;show run aaa&lt;BR /&gt;aaa authentication ssh console LOCAL&lt;BR /&gt;aaa authentication enable console LOCAL&lt;/P&gt;&lt;P&gt;2)RSA - OK&lt;/P&gt;&lt;P&gt;# show crypto key mypubkey rsa&lt;BR /&gt;Key pair was generated at: 06:52:25 UTC Dec 20 2012&lt;BR /&gt;Key name: &amp;lt;Default-RSA-Key&amp;gt;&lt;BR /&gt;&amp;nbsp;Usage: General Purpose Key&lt;BR /&gt;&amp;nbsp;Modulus Size (bits): 1024&lt;BR /&gt;&amp;nbsp;Key Data:&lt;/P&gt;&lt;P&gt;&amp;nbsp; 30819f30 0d06092a 864886f7 0d010101 05000381 8d003081 00c7aedd&lt;BR /&gt;&amp;nbsp; 49cdf0ae 8f96308b 415f95b9 3d213a1d 7868d015 b73ba1c2 c378ab19 b3ca06c3&lt;BR /&gt;&amp;nbsp; 7a40837f f39450a9 d7cc3dee d1b257a3 8127b5f9 5e8e7356 bd711b5d&lt;BR /&gt;&amp;nbsp; da63ab&lt;/P&gt;&lt;P&gt;3) SSH - OK&lt;/P&gt;&lt;P&gt;&amp;nbsp;show run ssh&lt;BR /&gt;ssh 0.0.0.0 0.0.0.0 inside&lt;BR /&gt;ssh IP-217.12.X.X-Ext host 255.255.255.255 outside&lt;/P&gt;&lt;P&gt;4) Username - OK&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;</description>
      <pubDate>Wed, 09 Sep 2015 21:08:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-remote-access/m-p/2740006#M178956</guid>
      <dc:creator>Alfredo Bosca Bataller</dc:creator>
      <dc:date>2015-09-09T21:08:07Z</dc:date>
    </item>
    <item>
      <title>Hi,To verify but is the new</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-remote-access/m-p/2740007#M178957</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;To verify but is the new IP from which you are accessing the ASA now ?&lt;/P&gt;&lt;P&gt;IP-217.12.X.X-Ext host&amp;nbsp; ???&lt;/P&gt;&lt;P&gt;If yes , can you apply capture on the ASA outside interface and see if you are even reaching the ASA device ?&lt;/P&gt;&lt;P&gt;https://supportforums.cisco.com/document/6971/packet-capture-asapix-fwsm&lt;/P&gt;&lt;P&gt;Also , check this "show asp table socket"&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Thu, 10 Sep 2015 00:59:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-remote-access/m-p/2740007#M178957</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-09-10T00:59:48Z</dc:date>
    </item>
    <item>
      <title>Yeah, I know the capture</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-remote-access/m-p/2740008#M178958</link>
      <description>&lt;P&gt;Yeah, I know the capture command.&lt;/P&gt;&lt;P&gt;Still not seen traffic, whereas the issue is that another device is filtering.&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;</description>
      <pubDate>Thu, 10 Sep 2015 11:08:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-remote-access/m-p/2740008#M178958</guid>
      <dc:creator>Alfredo Bosca Bataller</dc:creator>
      <dc:date>2015-09-10T11:08:00Z</dc:date>
    </item>
  </channel>
</rss>

