<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709064#M185352</link>
    <description>&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;Hi,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;I did some research on this and here i could find :&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;

&lt;PRE style="color: rgb(0, 0, 102); font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; widows: 1; word-spacing: 0px; -webkit-text-stroke-width: 0px; margin: 0em; background-color: rgb(238, 238, 238);"&gt;
&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;ASDM requires an SSL connection from the browser to the adaptive
   security appliance. By default, Firefox does not support base
   encryption (DES) for SSL and therefore requires the adaptive
   security appliance to have a strong encryption (3DES/AES) license.
   As a workaround, you can enable the security .ssl3.dhe_dss_des_sha
   setting in Firefox. See  &lt;A href="http://kb.mozillazine.org/About:config"&gt;http://kb.mozillazine.org/About:config&lt;/A&gt;
   to learn how to change hidden configuration preferences.
1.      Open Firefox web browser and follow instruction from above
   link to open about:config
2.      Add the new preference security .ssl3.dhe_dss_des_sha
   (Boolean  with value true)
3.      Reload Firefox web browser

Please verify bellow setting and configuration:
1.      The ASDM runs using Java so make sure that Java is installed
   on the PC
2.      Be sure that ASA is configured correctly:
-        the ASDM is enabled with "http server enabled"
-        the IP address or subnet  you accessing from is allowed
   (follow example  "http 192.168.1.1 255.255.255.255 inside")
-        there is the rule pointing the ASDM file asdm image
   disk0:/&amp;lt;name of the asdm bin file&amp;gt;
-        the asdm file exist on the flash: (check with the command
   "show flash")
-        the user is configured (check with the command "show run user
   ")
-        ssl setting in your case should use DES (check with the
   command "show run all ssl" -&amp;gt; "ssl encryption des-sha1")&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/PRE&gt;

&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;For IE :&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;You need to have Java version 6.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;Please try the same and let me know if this works for you.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;Regards,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;Akshay Rastogi&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 28 Jul 2015 04:36:03 GMT</pubDate>
    <dc:creator>Akshay Rastogi</dc:creator>
    <dc:date>2015-07-28T04:36:03Z</dc:date>
    <item>
      <title>ASDM without 3DES</title>
      <link>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709061#M185349</link>
      <description>&lt;P&gt;I have an ASA 5505 purchased and installed in China running asa8215-k8.bin code. No 3DES due to export controls and I can't legally install it.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;ASDM does not launch and from what I've read, the ssl encryption level is the issue.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;I can't set ssl encryption to AES or 3DES because those aren't supported on this unit. Does that mean the ASDM, AnyConnect and other features are permanently disabled or is there a way around this?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cisco Adaptive Security Appliance Software Version 8.2(5)&lt;BR /&gt;Device Manager Version 6.4(9)&lt;/P&gt;&lt;P&gt;Compiled on Fri 20-May-11 16:00 by builders&lt;BR /&gt;System image file is "disk0:/asa825-k8.bin"&lt;BR /&gt;Config file at boot was "startup-config"&lt;/P&gt;&lt;P&gt;fw-01 up 6 days 7 hours&lt;/P&gt;&lt;P&gt;Hardware:&amp;nbsp;&amp;nbsp; ASA5505, 512 MB RAM, CPU Geode 500 MHz&lt;BR /&gt;Internal ATA Compact Flash, 128MB&lt;BR /&gt;BIOS Flash Firmware Hub @ 0xffe00000, 1024KB&lt;/P&gt;&lt;P&gt;Encryption hardware device : Cisco ASA-5505 on-board accelerator (revision 0x0)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Boot microcode&amp;nbsp;&amp;nbsp; : CN1000-MC-BOOT-2.00&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SSL/IKE microcode: CNLite-MC-SSLm-PLUS-2.03&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; IPSec microcode&amp;nbsp; : CNlite-MC-IPSECm-MAIN-2.05&lt;/P&gt;&lt;P&gt;&amp;nbsp;0: Int: Internal-Data0/0&amp;nbsp;&amp;nbsp;&amp;nbsp; : address is 7c0e.ce3c.f9a5, irq 11&lt;BR /&gt;&amp;nbsp;1: Ext: Ethernet0/0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : address is 7c0e.ce3c.f99d, irq 255&lt;BR /&gt;&amp;nbsp;2: Ext: Ethernet0/1&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : address is 7c0e.ce3c.f99e, irq 255&lt;BR /&gt;&amp;nbsp;3: Ext: Ethernet0/2&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : address is 7c0e.ce3c.f99f, irq 255&lt;BR /&gt;&amp;nbsp;4: Ext: Ethernet0/3&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : address is 7c0e.ce3c.f9a0, irq 255&lt;BR /&gt;&amp;nbsp;5: Ext: Ethernet0/4&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : address is 7c0e.ce3c.f9a1, irq 255&lt;BR /&gt;&amp;nbsp;6: Ext: Ethernet0/5&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : address is 7c0e.ce3c.f9a2, irq 255&lt;BR /&gt;&amp;nbsp;7: Ext: Ethernet0/6&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : address is 7c0e.ce3c.f9a3, irq 255&lt;BR /&gt;&amp;nbsp;8: Ext: Ethernet0/7&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : address is 7c0e.ce3c.f9a4, irq 255&lt;BR /&gt;&amp;nbsp;9: Int: Internal-Data0/1&amp;nbsp;&amp;nbsp;&amp;nbsp; : address is 0000.0003.0002, irq 255&lt;BR /&gt;10: Int: Not used&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : irq 255&lt;BR /&gt;11: Int: Not used&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : irq 255&lt;/P&gt;&lt;P&gt;Licensed features for this platform:&lt;BR /&gt;Maximum Physical Interfaces&amp;nbsp;&amp;nbsp;&amp;nbsp; : 8&lt;BR /&gt;VLANs&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : 3, DMZ Restricted&lt;BR /&gt;Inside Hosts&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : 10&lt;BR /&gt;Failover&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : Disabled&lt;BR /&gt;VPN-DES&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : Enabled&lt;BR /&gt;VPN-3DES-AES&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : Disabled&lt;BR /&gt;SSL VPN Peers&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : 2&lt;BR /&gt;Total VPN Peers&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : 10&lt;BR /&gt;Dual ISPs&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : Disabled&lt;BR /&gt;VLAN Trunk Ports&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : 0&lt;BR /&gt;Shared License&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : Disabled&lt;BR /&gt;AnyConnect for Mobile&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : Disabled&lt;BR /&gt;AnyConnect for Cisco VPN Phone : Disabled&lt;BR /&gt;AnyConnect Essentials&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : Enabled&lt;BR /&gt;Advanced Endpoint Assessment&amp;nbsp;&amp;nbsp; : Disabled&lt;BR /&gt;UC Phone Proxy Sessions&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : 2&lt;BR /&gt;Total UC Proxy Sessions&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : 2&lt;BR /&gt;Botnet Traffic Filter&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : Disabled&lt;/P&gt;&lt;P&gt;This platform has a Base license.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:19:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709061#M185349</guid>
      <dc:creator>itdept0011111</dc:creator>
      <dc:date>2019-03-12T06:19:06Z</dc:date>
    </item>
    <item>
      <title>Hi,You could generate 3DES</title>
      <link>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709062#M185350</link>
      <description>&lt;P&gt;&lt;SPAN style="font-size:14px;"&gt;&lt;SPAN style="font-family:arial,helvetica,sans-serif;"&gt;Hi,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:14px;"&gt;&lt;SPAN style="font-family:arial,helvetica,sans-serif;"&gt;You could generate 3DES license free of cost from cisco.com website and activate the same on ASA. &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:14px;"&gt;&lt;SPAN style="font-family:arial,helvetica,sans-serif;"&gt;Please follow the below link to generate the key :&lt;BR /&gt;&amp;nbsp;&lt;BR /&gt;&lt;A href="www.cisco.com/go/license&amp;nbsp;" target="_blank"&gt;www.cisco.com/go/license&amp;nbsp;&lt;/A&gt;&lt;BR /&gt;&amp;nbsp;&lt;BR /&gt;- &amp;nbsp; Click on "Product License Registration" Tab on the Right.&lt;BR /&gt;&amp;nbsp;&lt;BR /&gt;- &amp;nbsp; Click on Get Other Licenses dropdown menu on the Right and select "IPS, Crypto, Other..." link&lt;BR /&gt;&amp;nbsp;&lt;BR /&gt;- &amp;nbsp; Select "Security Product" from the Product family and Select Cisco ASA "3DES/AES License".&lt;BR /&gt;&amp;nbsp;&lt;BR /&gt;- &amp;nbsp; Enter the Serial Number of the ASA (New ASA).&lt;BR /&gt;&amp;nbsp;&lt;BR /&gt;- &amp;nbsp; Next and then Select the “I Agree” check box and Type your “Email Address” and Click Submit.&lt;BR /&gt;&amp;nbsp;&lt;BR /&gt;- &amp;nbsp; Activate the License Key on ASA with the "activation-key" command in Configuration Terminal Mode. Do not reload the ASA and check the license once again with ‘show activation-key’ command.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:14px;"&gt;&lt;SPAN style="font-family:arial,helvetica,sans-serif;"&gt;Also check if ssl encryption is enabled.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:14px;"&gt;&lt;SPAN style="font-family:arial,helvetica,sans-serif;"&gt;conf t )#ssl encryption ? (now it would display all the available encryption sets. Select everything in a single line with a space.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:14px;"&gt;&lt;SPAN style="font-family:arial,helvetica,sans-serif;"&gt;Let me know if you have any query on this.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:14px;"&gt;&lt;SPAN style="font-family:arial,helvetica,sans-serif;"&gt;Regards,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:14px;"&gt;&lt;SPAN style="font-family:arial,helvetica,sans-serif;"&gt;Akshay Rastogi&lt;/SPAN&gt;&lt;/SPAN&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Jul 2015 18:21:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709062#M185350</guid>
      <dc:creator>Akshay Rastogi</dc:creator>
      <dc:date>2015-07-22T18:21:05Z</dc:date>
    </item>
    <item>
      <title>I could generate and install</title>
      <link>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709063#M185351</link>
      <description>&lt;P&gt;I could generate and install a 3DES license, but since I'd rather stay out of federal prison for exporting cryptography to a country on the government export control list, I won't &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My question again is if there is a way you can use ASDM without 3DES. Does Cisco restrict that functionality for devices in Russia, China and other countries who we can't use 3DES and AES?&amp;nbsp; Am I stuck with telnet for management?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Jul 2015 19:01:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709063#M185351</guid>
      <dc:creator>itdept0011111</dc:creator>
      <dc:date>2015-07-22T19:01:16Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709064#M185352</link>
      <description>&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;Hi,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;I did some research on this and here i could find :&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;

&lt;PRE style="color: rgb(0, 0, 102); font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; widows: 1; word-spacing: 0px; -webkit-text-stroke-width: 0px; margin: 0em; background-color: rgb(238, 238, 238);"&gt;
&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;ASDM requires an SSL connection from the browser to the adaptive
   security appliance. By default, Firefox does not support base
   encryption (DES) for SSL and therefore requires the adaptive
   security appliance to have a strong encryption (3DES/AES) license.
   As a workaround, you can enable the security .ssl3.dhe_dss_des_sha
   setting in Firefox. See  &lt;A href="http://kb.mozillazine.org/About:config"&gt;http://kb.mozillazine.org/About:config&lt;/A&gt;
   to learn how to change hidden configuration preferences.
1.      Open Firefox web browser and follow instruction from above
   link to open about:config
2.      Add the new preference security .ssl3.dhe_dss_des_sha
   (Boolean  with value true)
3.      Reload Firefox web browser

Please verify bellow setting and configuration:
1.      The ASDM runs using Java so make sure that Java is installed
   on the PC
2.      Be sure that ASA is configured correctly:
-        the ASDM is enabled with "http server enabled"
-        the IP address or subnet  you accessing from is allowed
   (follow example  "http 192.168.1.1 255.255.255.255 inside")
-        there is the rule pointing the ASDM file asdm image
   disk0:/&amp;lt;name of the asdm bin file&amp;gt;
-        the asdm file exist on the flash: (check with the command
   "show flash")
-        the user is configured (check with the command "show run user
   ")
-        ssl setting in your case should use DES (check with the
   command "show run all ssl" -&amp;gt; "ssl encryption des-sha1")&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/PRE&gt;

&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;For IE :&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;You need to have Java version 6.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;Please try the same and let me know if this works for you.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;Regards,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size:16px;"&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;Akshay Rastogi&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jul 2015 04:36:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709064#M185352</guid>
      <dc:creator>Akshay Rastogi</dc:creator>
      <dc:date>2015-07-28T04:36:03Z</dc:date>
    </item>
    <item>
      <title>Thanks very much for pursing</title>
      <link>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709065#M185353</link>
      <description>&lt;P&gt;Thanks very much for pursing a solution.&amp;nbsp; Unfortunately, that didn't seem to work.&amp;nbsp;&lt;/P&gt;&lt;P&gt;All of the needed settings are present and the ASDM file exists. I've checked and double-checked settings.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I added the preference to Firefox (see attached jpg) as you suggested but any connection attempt still fails.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jul 2015 22:17:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709065#M185353</guid>
      <dc:creator>itdept0011111</dc:creator>
      <dc:date>2015-07-28T22:17:40Z</dc:date>
    </item>
    <item>
      <title>itdept001111,What source</title>
      <link>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709066#M185354</link>
      <description>&lt;P&gt;itdept001111,&lt;/P&gt;&lt;P&gt;What source tells you China is on the embargoed list? As far as I know, strong encryption export is only restricted to the embargoed countries list that currently includes only&amp;nbsp;Cuba, Iran, North Korea, Sudan, and Syria.&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/web/about/doing_business/legal/global_export_trade/general_export/contract_compliance.html"&gt;Reference&lt;/A&gt;. Note the reference document I cited is specifically called out as applicable to the ASA in &lt;A href="http://www.cisco.com/c/en/us/products/collateral/security/asa-5500-series-next-generation-firewalls/prod_qas0900aecd805a1273.html"&gt;this document&lt;/A&gt;.&lt;/P&gt;</description>
      <pubDate>Wed, 29 Jul 2015 02:44:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/2709066#M185354</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2015-07-29T02:44:08Z</dc:date>
    </item>
    <item>
      <title>Re: Hi,</title>
      <link>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/3776252#M185355</link>
      <description>&lt;P&gt;Do not appear the capcha information, only a black space without any info when we try.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Tested with two diferents computers and internet accesses, with diferents browsers.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How to fix it?&lt;/P&gt;</description>
      <pubDate>Wed, 09 Jan 2019 16:49:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/3776252#M185355</guid>
      <dc:creator>Celso Domingues</dc:creator>
      <dc:date>2019-01-09T16:49:19Z</dc:date>
    </item>
    <item>
      <title>Re: Hi,</title>
      <link>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/3776563#M185356</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/832746"&gt;@Celso Domingues&lt;/a&gt;&amp;nbsp;please start a new thread and explain your issue in more detail.&lt;/P&gt;</description>
      <pubDate>Thu, 10 Jan 2019 02:25:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-without-3des/m-p/3776563#M185356</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-01-10T02:25:02Z</dc:date>
    </item>
  </channel>
</rss>

