<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Need help with configuration in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459602#M268596</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'll try that for the NAT, for the ASDM I don't have the ASDM S/W installed in other places I could download it from the device which is what I'm trying to do here. So will this command allow me to get to the device from the browser to downlaod the ASDM client? Also will the command aaa authentication http console LOCAL disable anything else like&amp;nbsp; my current ssh login?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 05 Mar 2014 14:02:19 GMT</pubDate>
    <dc:creator>jason0923</dc:creator>
    <dc:date>2014-03-05T14:02:19Z</dc:date>
    <item>
      <title>Need help with configuration</title>
      <link>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459598#M268592</link>
      <description>&lt;DIV&gt;&lt;P&gt;I'm new to Cisco and we just took over a client with an ASA 5505 I need to do 2 things first &lt;/P&gt;&lt;P&gt;I&amp;nbsp; need to know how to open or forward ports to an internal IP address&amp;nbsp;&amp;nbsp; they want me to open ports 3389 and 1433 to an internal address&amp;nbsp;&amp;nbsp; 192.168.192.52&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;but only from&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 207.235.73.64 and 255.255.255.192&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 40.143.46.64 and 255.255.255.192&lt;/P&gt;&lt;P&gt;o&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; and&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 66.192.91.128 and 255.255.255.192&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 40.143.28.64 and 255.255.255.192&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And&amp;nbsp; second Id link to getb the ASDM downlaoded and working as I;ve used&amp;nbsp; that before in other offices and it helps me out as a non cisco expert. I&amp;nbsp; try going to the device IP in a browser 192.168.192.1/admin and just&amp;nbsp; get a prompt for username and password but it doesn;t take the one I&amp;nbsp; have. Here is the config on the device right now. Any help you guys can&amp;nbsp; point me to Id appreciate. 4 hours of Google research has gotten me no&amp;nbsp; where&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sho run&lt;/P&gt;&lt;P&gt;: Saved&lt;/P&gt;&lt;P&gt;:&lt;/P&gt;&lt;P&gt;ASA Version 7.2(3)&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;hostname vmine&lt;/P&gt;&lt;P&gt;domain-name mine&lt;/P&gt;&lt;P&gt;enable password CyQcVKTj6CW8.Vsj encrypted&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan1&lt;/P&gt;&lt;P&gt; nameif inside&lt;/P&gt;&lt;P&gt; security-level 100&lt;/P&gt;&lt;P&gt; ip address 192.168.192.1 255.255.255.0&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan2&lt;/P&gt;&lt;P&gt; nameif outside&lt;/P&gt;&lt;P&gt; security-level 0&lt;/P&gt;&lt;P&gt; ip address x.x.x.x 255.255.255.248&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan3&lt;/P&gt;&lt;P&gt; mac-address 001f.6ce3.bd99&lt;/P&gt;&lt;P&gt; no forward interface Vlan1&lt;/P&gt;&lt;P&gt; nameif guest&lt;/P&gt;&lt;P&gt; security-level 10&lt;/P&gt;&lt;P&gt; ip address 205.10.2.1 255.255.255.0&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/0&lt;/P&gt;&lt;P&gt; description Internet-Connection&lt;/P&gt;&lt;P&gt; switchport access vlan 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1&lt;/P&gt;&lt;P&gt; description Connection to Inside Network&lt;/P&gt;&lt;P&gt; speed 100&lt;/P&gt;&lt;P&gt; duplex full&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/2&lt;/P&gt;&lt;P&gt; shutdown&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/3&lt;/P&gt;&lt;P&gt; switchport access vlan 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/4&lt;/P&gt;&lt;P&gt; switchport access vlan 3&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/5&lt;/P&gt;&lt;P&gt; description Connection to Public Network&lt;/P&gt;&lt;P&gt; switchport access vlan 3&lt;/P&gt;&lt;P&gt; speed 100&lt;/P&gt;&lt;P&gt; duplex full&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/6&lt;/P&gt;&lt;P&gt; shutdown&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/7&lt;/P&gt;&lt;P&gt; shutdown&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;passwd CyQcVKTj6CW8.Vsj encrypted&lt;/P&gt;&lt;P&gt;ftp mode passive&lt;/P&gt;&lt;P&gt;dns server-group DefaultDNS&lt;/P&gt;&lt;P&gt; domain-name domain&lt;/P&gt;&lt;P&gt;access-list guest extended permit icmp any any&lt;/P&gt;&lt;P&gt;access-list guest extended permit ip any any&lt;/P&gt;&lt;P&gt;access-list inside extended permit icmp any any&lt;/P&gt;&lt;P&gt;access-list inside extended permit ip any any&lt;/P&gt;&lt;P&gt;access-list outside extended permit icmp any any echo-reply&lt;/P&gt;&lt;P&gt;access-list outside extended permit tcp any any eq 8440&lt;/P&gt;&lt;P&gt;access-list nonat extended permit ip 192.168.192.0 255.255.255.0 192.168.252.0 255.255.255.0&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp any any eq https&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp host x.x.x.x any eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp host x.x.x.x any eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp host x.x.x.x any eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp host x.x.x.x any eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp host x.x.x.x any eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp host x.x.x.x any eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp host x.x.x.x any eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp host x.x.x.x any eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp host x.x.x.x any eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp host x.x.x.x any eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp host x.x.x.x any eq 1433&lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;logging enable&lt;/P&gt;&lt;P&gt;logging buffer-size 16384&lt;/P&gt;&lt;P&gt;logging buffered informational&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;mtu guest 1500&lt;/P&gt;&lt;P&gt;ip local pool vpn-ip 192.168.252.1-192.168.252.&lt;/P&gt;&lt;P&gt;10&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;asdm image disk0:/asdm.bin&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;global (outside) 1 x.x.x.x&lt;BR /&gt;global (outside) 2 x.x.x.x&lt;BR /&gt;nat (inside) 0 access-list nonat&lt;BR /&gt;nat (inside) 1 192.168.192.0 255.255.255.0&lt;BR /&gt;nat (guest) 2 205.10.2.0 255.255.255.0&lt;BR /&gt;static (inside,outside) tcp interface www 192.168.192.170 www netmask 255.255.255.255&lt;BR /&gt;static (inside,outside) tcp interface https 192.168.192.170 https netmask 255.255.255.255&lt;BR /&gt;static (inside,outside) x.x.x.x 192.168.192.52 netmask 255.255.255.255&lt;BR /&gt;access-group inside in interface inside&lt;BR /&gt;access-group outside-in in interface outside&lt;BR /&gt;access-group guest in interface guest&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 x.x.x.x 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout uauth 0:05:00 absolute&lt;BR /&gt;http server enable&lt;BR /&gt;http 0.0.0.0 0.0.0.0 inside&lt;BR /&gt;http 192.168.192.0 255.255.255.0 inside&lt;BR /&gt;snmp-server host inside 192.168.192.10 poll community ciscosnmp&lt;BR /&gt;snmp-server location PIX&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server community ciscosnmp&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;BR /&gt;snmp-server enable traps syslog&lt;BR /&gt;crypto ipsec transform-set DES-MD5 esp-des esp-md5-hmac&lt;BR /&gt;crypto dynamic-map dynvpn 10 set transform-set DES-MD5&lt;BR /&gt;crypto map vpn 65535 ipsec-isakmp dynamic dynvpn&lt;BR /&gt;crypto map vpn interface outside&lt;BR /&gt;crypto isakmp identity address&lt;BR /&gt;crypto isakmp enable outside&lt;BR /&gt;crypto isakmp policy 10&lt;BR /&gt; authentication pre-share&lt;BR /&gt; encryption des&lt;BR /&gt; hash md5&lt;BR /&gt; group 2&lt;BR /&gt; lifetime 28800&lt;BR /&gt;crypto isakmp nat-traversal&amp;nbsp; 20&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh 0.0.0.0 0.0.0.0 inside&lt;BR /&gt;ssh 0.0.0.0 0.0.0.0 outside&lt;BR /&gt;ssh timeout 30&lt;BR /&gt;console timeout 0&lt;BR /&gt;dhcpd dns 209.253.113.10 209.253.113.18&lt;BR /&gt;!&lt;BR /&gt;dhcpd address 205.10.2.10-205.10.2.99 guest&lt;BR /&gt;dhcpd dns 209.253.113.10 209.253.113.18 interface guest&lt;BR /&gt;dhcpd enable guest&lt;BR /&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt; match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns preset_dns_map&lt;BR /&gt; parameters&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt; class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp; inspect ftp&lt;BR /&gt;&amp;nbsp; inspect h323 h225&lt;BR /&gt;&amp;nbsp; inspect h323 ras&lt;BR /&gt;&amp;nbsp; inspect netbios&lt;BR /&gt;&amp;nbsp; inspect rsh&lt;BR /&gt;&amp;nbsp; inspect rtsp&lt;BR /&gt;&amp;nbsp; inspect skinny&lt;BR /&gt;&amp;nbsp; inspect esmtp&lt;BR /&gt;&amp;nbsp; inspect sqlnet&lt;BR /&gt;&amp;nbsp; inspect sunrpc&lt;BR /&gt;&amp;nbsp; inspect tftp&lt;BR /&gt;&amp;nbsp; inspect sip&lt;BR /&gt;&amp;nbsp; inspect xdmcp&lt;BR /&gt;&amp;nbsp; inspect ipsec-pass-thru&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;group-policy RA-VPN internal&lt;BR /&gt;group-policy RA-VPN attributes&lt;BR /&gt; split-tunnel-policy tunnelspecified&lt;BR /&gt; split-tunnel-network-list value nonat&lt;BR /&gt;username VMRemote password .RSNgq92vZTSELWV encrypted&lt;BR /&gt;username VMRemote attributes&lt;BR /&gt; vpn-group-policy RA-VPN&lt;BR /&gt;username VMVPN password jSqp8CjjxHhRa6jk encrypted&lt;BR /&gt;username kernels password jDS98nJtthzlEvw5 encrypted&lt;BR /&gt;tunnel-group VMVPN type ipsec-ra&lt;BR /&gt;tunnel-group VMVPN general-attributes&lt;BR /&gt; address-pool vpn-ip&lt;BR /&gt;tunnel-group VMVPN ipsec-attributes&lt;BR /&gt; pre-shared-key *&lt;BR /&gt;prompt hostname context&lt;BR /&gt;Cryptochecksum:52c3d65fc1111c561b1598cc341dc6d5&lt;BR /&gt;: end&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;</description>
      <pubDate>Tue, 12 Mar 2019 03:53:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459598#M268592</guid>
      <dc:creator>jason0923</dc:creator>
      <dc:date>2019-03-12T03:53:45Z</dc:date>
    </item>
    <item>
      <title>Need help with configuration</title>
      <link>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459599#M268593</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As per your 1st query , I think he Static NAT should work fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To restrict the access from the outside only for certain IP , you can use Source Based ACL:-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp 207.235.73.64 255.255.255.192 host x.x.x.x eq 3389&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp 40.143.46.64 255.255.255.192 host x.x.x.x eq 3389&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp 66.192.91.128 255.255.255.192 host x.x.x.x eq 3389&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp 40.143.28.64 255.255.255.192 host x.x.x.x eq 3389&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp 207.235.73.64 255.255.255.192 host x.x.x.x eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp 40.143.46.64 255.255.255.192 host x.x.x.x eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp 66.192.91.128 255.255.255.192 host x.x.x.x eq 1433&lt;/P&gt;&lt;P&gt;access-list outside-in extended permit tcp 40.143.28.64 255.255.255.192 host x.x.x.x eq 1433&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you would like to use the LOCAL username and Passowrd on the ASA:-&lt;/P&gt;&lt;P&gt;aaa authentication http console LOCAL&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Mar 2014 00:13:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459599#M268593</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2014-03-05T00:13:21Z</dc:date>
    </item>
    <item>
      <title>Need help with configuration</title>
      <link>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459600#M268594</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;So are those commands with 192.168.192.52 in place of x.x.x.x all I need or is that just to restrict access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For the ASDM I don't know what you mean by would I like to. I have a password I am using to login via ssh. IS that not the same login to get to this asdm page in the browser?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Mar 2014 00:24:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459600#M268594</guid>
      <dc:creator>jason0923</dc:creator>
      <dc:date>2014-03-05T00:24:00Z</dc:date>
    </item>
    <item>
      <title>Need help with configuration</title>
      <link>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459601#M268595</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Jason,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is the Static NAT as per your requirement already configured on the ASA device.:-&lt;/P&gt;&lt;P&gt;static (inside,outside) x.x.x.x 192.168.192.52 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you would like to restrict access from the Outside , you have to use the ACL as mentioned above.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would request you to add this command to LOGIN to the ASDM using the username and Password:-&lt;/P&gt;&lt;P&gt;aaa authentication http console LOCAL&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Mar 2014 13:34:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459601#M268595</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2014-03-05T13:34:56Z</dc:date>
    </item>
    <item>
      <title>Need help with configuration</title>
      <link>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459602#M268596</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'll try that for the NAT, for the ASDM I don't have the ASDM S/W installed in other places I could download it from the device which is what I'm trying to do here. So will this command allow me to get to the device from the browser to downlaod the ASDM client? Also will the command aaa authentication http console LOCAL disable anything else like&amp;nbsp; my current ssh login?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Mar 2014 14:02:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459602#M268596</guid>
      <dc:creator>jason0923</dc:creator>
      <dc:date>2014-03-05T14:02:19Z</dc:date>
    </item>
    <item>
      <title>Need help with configuration</title>
      <link>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459603#M268597</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I added the &lt;/P&gt;&lt;P&gt;aaa authentication http console LOCAL command and still cannot access the device via the browser.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Mar 2014 17:15:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459603#M268597</guid>
      <dc:creator>jason0923</dc:creator>
      <dc:date>2014-03-05T17:15:23Z</dc:date>
    </item>
    <item>
      <title>Need help with configuration</title>
      <link>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459604#M268598</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is the asdm image in the ASA flash memory and specified as the image?&lt;/P&gt;&lt;P&gt;# sh disk0:/&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;-- To look into the flash&lt;/P&gt;&lt;P&gt;# sh asdm image&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;-- To show the current asdm image being served up&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASDM 5.2(4) is the recomended software for the ASA sofware version 7.2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Above, it says "asdm.bin" but usually the filename is more descriptive, for example:&lt;/P&gt;&lt;P&gt;ASA-FW# sh asdm image&lt;/P&gt;&lt;P&gt;Device Manager image file, disk0:/asdm-713.bin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Mar 2014 06:51:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459604#M268598</guid>
      <dc:creator>bunjiega</dc:creator>
      <dc:date>2014-03-06T06:51:09Z</dc:date>
    </item>
    <item>
      <title>Need help with configuration</title>
      <link>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459605#M268599</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In addition to the above recommendations , I would request you to get these output:-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show asp table socket&lt;/P&gt;&lt;P&gt;show run http&lt;/P&gt;&lt;P&gt;Java Version on your PC&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Mar 2014 15:05:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459605#M268599</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2014-03-06T15:05:48Z</dc:date>
    </item>
    <item>
      <title>Need help with configuration</title>
      <link>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459606#M268600</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;To answer your questions it says asdm-523.bin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show asp table socket gives me a syntax error&lt;/P&gt;&lt;P&gt;sho run http gives me&lt;/P&gt;&lt;P&gt;http 0.0.0.0 0.0.0.0 inside&lt;/P&gt;&lt;P&gt;http 192.168.192.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'll check the java version on the server I'm using when I can but the broiwser is asking me for a login and pwd when i try and access the asa so i don't know if Java is even being used at that point&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Mar 2014 16:10:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-help-with-configuration/m-p/2459606#M268600</guid>
      <dc:creator>jason0923</dc:creator>
      <dc:date>2014-03-06T16:10:48Z</dc:date>
    </item>
  </channel>
</rss>

