<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic   Hello Sir,Sorry for the in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459684#M268008</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;Hello Sir,&lt;BR /&gt;&lt;BR /&gt;Sorry for the delay, thanks for the reply, Sir, do you mean that by default the security settings on the ASA firewall is set the max(Highest) level?&lt;BR /&gt;&lt;BR /&gt;How do we install IPS/IDS on ASA firewall?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do these IPS/IDS protect the LAN from external threats eg. viruses,trogons and etc?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 06 May 2014 10:31:35 GMT</pubDate>
    <dc:creator>Fahad Wasi</dc:creator>
    <dc:date>2014-05-06T10:31:35Z</dc:date>
    <item>
      <title>about ASA firewall</title>
      <link>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459679#M268003</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;Hello everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;I have a question about ASA firewall, is it true that in ASA firewall, their are&amp;nbsp;2 ways we can configure it?&lt;/P&gt;&lt;P&gt;&amp;nbsp;Either we use GUI mode to access the ASA firewall or CLI mode?&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;Is the GUI application basically the ASDM that we download and install it on the firewall?&lt;BR /&gt;&lt;BR /&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:00:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459679#M268003</guid>
      <dc:creator>Fahad Wasi</dc:creator>
      <dc:date>2019-03-12T04:00:23Z</dc:date>
    </item>
    <item>
      <title>Yes, you are right. You can</title>
      <link>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459680#M268004</link>
      <description>&lt;P&gt;Yes, you are right. You can use either the CLI or the GUI which is the ASDM.&lt;/P&gt;&lt;P&gt;For the firewalling-part you can also do some config on the CLI and other config on the GUI, just as you want.&lt;/P&gt;&lt;P&gt;But for VPN, there are some parts in the config that can't be configured with the CLI, these have to be done in the GUI.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Mar 2014 11:52:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459680#M268004</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2014-03-28T11:52:52Z</dc:date>
    </item>
    <item>
      <title>hi fahad,karsten is right!</title>
      <link>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459681#M268005</link>
      <description>&lt;P&gt;hi fahad,&lt;/P&gt;&lt;P&gt;karsten is right! you can only do certain things or configuration in ASDM (ASA GUI) versus CLI.&lt;/P&gt;&lt;P&gt;a perfect example is the clientless SSL VPN (webvpn) portal customization.&lt;/P&gt;&lt;P&gt;also to further add his answer, there's an option either to install the launcher permanently on your PC/NMS or run dynamically from ASA (from flash).&lt;/P&gt;&lt;P&gt;&lt;IMG border="0" hspace="0" id="wp59697" src="http://www.cisco.com/c/dam/en/us/td/i/300001-400000/300001-310000/300001-301000/300017.tif/_jcr_content/renditions/300017.jpg" vspace="0" /&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 30 Mar 2014 02:36:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459681#M268005</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2014-03-30T02:36:00Z</dc:date>
    </item>
    <item>
      <title>  Hello Karsten IwenThanks</title>
      <link>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459682#M268006</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;Hello Karsten Iwen&lt;/P&gt;&lt;P&gt;Thanks for your reply so you mean that their are certain configurations that can only be done on CLI and GUI mode?&lt;/P&gt;&lt;P&gt;My other question is apart from configuring ACL on firewalls, what else can we do on it?&lt;BR /&gt;Do we also have to configure IPS /IDS on it or they are by default set?&lt;BR /&gt;&lt;BR /&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 10 Apr 2014 16:36:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459682#M268006</guid>
      <dc:creator>Fahad Wasi</dc:creator>
      <dc:date>2014-04-10T16:36:42Z</dc:date>
    </item>
    <item>
      <title>Very little is set by default</title>
      <link>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459683#M268007</link>
      <description>&lt;P&gt;Very little is set by default. A default configuration only has the management interface active with an IP address and DHCP server. Once you setup some basic interface addresses and give them names and security levels you will, by default, be allowed to pass traffic from higher security to lower security level interfaces. Some routing is helpful to make anything other than connected networks reachable.&lt;/P&gt;&lt;P&gt;There are hundreds of other things you can do. IDS/IPS, for instance is a separate and optional module on the ASA. Only if you have it installed and licensed can you then create a service-policy in the ASA (using cli or GUI) directing traffic to it.&lt;/P&gt;&lt;P&gt;Configuration of the IDS is technically possible from the cli but 99% of people use the GUI (ASDM or IME - IPS Manager Express) for that.&lt;/P&gt;</description>
      <pubDate>Thu, 10 Apr 2014 17:43:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459683#M268007</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-04-10T17:43:28Z</dc:date>
    </item>
    <item>
      <title>  Hello Sir,Sorry for the</title>
      <link>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459684#M268008</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;Hello Sir,&lt;BR /&gt;&lt;BR /&gt;Sorry for the delay, thanks for the reply, Sir, do you mean that by default the security settings on the ASA firewall is set the max(Highest) level?&lt;BR /&gt;&lt;BR /&gt;How do we install IPS/IDS on ASA firewall?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do these IPS/IDS protect the LAN from external threats eg. viruses,trogons and etc?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 06 May 2014 10:31:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459684#M268008</guid>
      <dc:creator>Fahad Wasi</dc:creator>
      <dc:date>2014-05-06T10:31:35Z</dc:date>
    </item>
    <item>
      <title>Also, just to add, the XML</title>
      <link>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459685#M268009</link>
      <description>&lt;P&gt;Also, just to add, the XML files for the anyconnect profiles can only be customised via the ASDM.&lt;/P&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;Please remember to select a correct answer and rate&lt;/P&gt;</description>
      <pubDate>Tue, 06 May 2014 11:10:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459685#M268009</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2014-05-06T11:10:22Z</dc:date>
    </item>
    <item>
      <title>As I mentioned above, "IDS</title>
      <link>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459686#M268010</link>
      <description>&lt;P&gt;As I mentioned above, "&lt;SPAN style="font-size: 14px;"&gt;IDS/IPS, for instance is a separate and optional module on the ASA." It must be installed and licensed. There are several types for the ASA. On the older 5500 series as well as the newer 5500-X series, one can use the AIP-SSM, part of Cisco's older technology IPS. Its capabilities are covered in the &lt;A href="http://www.cisco.com/c/en/us/products/collateral/security/ips-4200-series-sensors/product_data_sheet0900aecd805baef2.html"&gt;data sheet&lt;/A&gt;.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;The newer 5500-X series also have the option of running IPS services on the CX module as part of the Next Generation Firewall (NGFW) features (also included is the option to run Web Security Essentials and Application Visibility and Control). That product is further described &lt;A href="http://www.cisco.com/c/en/us/products/collateral/security/asa-5500-series-next-generation-firewalls/data_sheet_c78-701659.html"&gt;here&lt;/A&gt;.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;The NGFW features are going to give you the greatest protection going forward as that represents the latest platform and developments from Cisco.&lt;/P&gt;&lt;P&gt;For whichever path you choose, the product support page (linked from the product info pages I already noted above) for a given product has installation and configuration guides.&lt;/P&gt;</description>
      <pubDate>Tue, 06 May 2014 18:31:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/about-asa-firewall/m-p/2459686#M268010</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-05-06T18:31:21Z</dc:date>
    </item>
  </channel>
</rss>

