<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA5505 Botnet Filter in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa5505-botnet-filter/m-p/1972318#M435574</link>
    <description>&lt;P&gt;Hello All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have an internal DNS server that all internal hosts do lookups to .. these requests are forwarded onto opendns for anything the dns server isnt authorative for.. My question is we have purchased the botnet filter and this requires the asa5505 dns client to be active on at least one interface .. Should i point the asa dns to an external IP such as 8.8.8.8 and apply DNS enabled on interface outside ( am using asdm) &lt;/P&gt;&lt;P&gt;I dont want the ASA to control DNS for our internal clients we already have a internal server for this, i&amp;nbsp; DO want the asa5505 to check dns packets against its botnet filter, whilst still using open dns for forwarding ... how can one do this ?&lt;/P&gt;&lt;P&gt;TIA&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 23:12:43 GMT</pubDate>
    <dc:creator>john_rothingham</dc:creator>
    <dc:date>2019-03-11T23:12:43Z</dc:date>
    <item>
      <title>ASA5505 Botnet Filter</title>
      <link>https://community.cisco.com/t5/network-security/asa5505-botnet-filter/m-p/1972318#M435574</link>
      <description>&lt;P&gt;Hello All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have an internal DNS server that all internal hosts do lookups to .. these requests are forwarded onto opendns for anything the dns server isnt authorative for.. My question is we have purchased the botnet filter and this requires the asa5505 dns client to be active on at least one interface .. Should i point the asa dns to an external IP such as 8.8.8.8 and apply DNS enabled on interface outside ( am using asdm) &lt;/P&gt;&lt;P&gt;I dont want the ASA to control DNS for our internal clients we already have a internal server for this, i&amp;nbsp; DO want the asa5505 to check dns packets against its botnet filter, whilst still using open dns for forwarding ... how can one do this ?&lt;/P&gt;&lt;P&gt;TIA&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:12:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5505-botnet-filter/m-p/1972318#M435574</guid>
      <dc:creator>john_rothingham</dc:creator>
      <dc:date>2019-03-11T23:12:43Z</dc:date>
    </item>
    <item>
      <title>ASA5505 Botnet Filter</title>
      <link>https://community.cisco.com/t5/network-security/asa5505-botnet-filter/m-p/1972319#M435575</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This link doesn't really get into ASDM config but, you can use CLI and refersh ASDM and verify the config there.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-wiki-small" href="https://community.cisco.com/docs/DOC-8782"&gt;https://supportforums.cisco.com/docs/DOC-8782&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I found an asdm link as well: &lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa83/asdm63/configuration_guide/protect_botnet.html"&gt;http://www.cisco.com/en/US/docs/security/asa/asa83/asdm63/configuration_guide/protect_botnet.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Good luck.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Kureli&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 03 Jun 2012 16:46:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5505-botnet-filter/m-p/1972319#M435575</guid>
      <dc:creator>Kureli Sankar</dc:creator>
      <dc:date>2012-06-03T16:46:53Z</dc:date>
    </item>
  </channel>
</rss>

