<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Block IP address from Outside interface in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/block-ip-address-from-outside-interface/m-p/1709875#M529300</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="padding: 0pt; margin: 0pt;"&gt;Hey Josh,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="padding: 0pt; margin: 0pt;"&gt;If you don't want any connection to estaiblish from two known IP addresses, you may go ahead and "shun" them. The command to do this will look like:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE style="display: block; white-space: pre; width: auto; font-size: 13px; padding: 0pt; margin: 0pt;"&gt;hostname#&lt;STRONG&gt; shun &lt;IP_ADDRESS&gt;&lt;/IP_ADDRESS&gt;&lt;/STRONG&gt;&lt;/PRE&gt;&lt;PRE style="display: block; white-space: pre; width: auto; font-size: 13px; padding: 0pt; margin: 0pt;"&gt;&lt;STRONG&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/PRE&gt;&lt;PRE style="display: block; white-space: pre; width: auto; font-size: 13px; padding: 0pt; margin: 0pt;"&gt;Hope this helps!

&lt;/PRE&gt;&lt;P style="padding: 0pt; margin: 0pt;"&gt;Regards,&lt;/P&gt;&lt;P style="padding: 0pt; margin: 0pt;"&gt;Aditya&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 24 Jun 2011 15:50:10 GMT</pubDate>
    <dc:creator>advijay</dc:creator>
    <dc:date>2011-06-24T15:50:10Z</dc:date>
    <item>
      <title>Block IP address from Outside interface</title>
      <link>https://community.cisco.com/t5/network-security/block-ip-address-from-outside-interface/m-p/1709872#M529297</link>
      <description>&lt;P&gt;Hello.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Recently, I've been having significant problems with denial of service on our ASA-5510. Two IP addresses in particular attack my ASA regularly. What kind of rule do I need to create to deny these IP's access to my firewall?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 20:50:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/block-ip-address-from-outside-interface/m-p/1709872#M529297</guid>
      <dc:creator>SamMooreIT</dc:creator>
      <dc:date>2019-03-11T20:50:12Z</dc:date>
    </item>
    <item>
      <title>Block IP address from Outside interface</title>
      <link>https://community.cisco.com/t5/network-security/block-ip-address-from-outside-interface/m-p/1709873#M529298</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What type of attack?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 24 Jun 2011 15:09:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/block-ip-address-from-outside-interface/m-p/1709873#M529298</guid>
      <dc:creator>Kelvin Willacey</dc:creator>
      <dc:date>2011-06-24T15:09:35Z</dc:date>
    </item>
    <item>
      <title>Re: Block IP address from Outside interface</title>
      <link>https://community.cisco.com/t5/network-security/block-ip-address-from-outside-interface/m-p/1709874#M529299</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Either a Scan or SYN attack. But the IP's in question are generating significant inbound traffic. They are listed in top 10 sources pie of my ASDM GUI.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 24 Jun 2011 15:46:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/block-ip-address-from-outside-interface/m-p/1709874#M529299</guid>
      <dc:creator>SamMooreIT</dc:creator>
      <dc:date>2011-06-24T15:46:04Z</dc:date>
    </item>
    <item>
      <title>Block IP address from Outside interface</title>
      <link>https://community.cisco.com/t5/network-security/block-ip-address-from-outside-interface/m-p/1709875#M529300</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="padding: 0pt; margin: 0pt;"&gt;Hey Josh,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="padding: 0pt; margin: 0pt;"&gt;If you don't want any connection to estaiblish from two known IP addresses, you may go ahead and "shun" them. The command to do this will look like:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE style="display: block; white-space: pre; width: auto; font-size: 13px; padding: 0pt; margin: 0pt;"&gt;hostname#&lt;STRONG&gt; shun &lt;IP_ADDRESS&gt;&lt;/IP_ADDRESS&gt;&lt;/STRONG&gt;&lt;/PRE&gt;&lt;PRE style="display: block; white-space: pre; width: auto; font-size: 13px; padding: 0pt; margin: 0pt;"&gt;&lt;STRONG&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/PRE&gt;&lt;PRE style="display: block; white-space: pre; width: auto; font-size: 13px; padding: 0pt; margin: 0pt;"&gt;Hope this helps!

&lt;/PRE&gt;&lt;P style="padding: 0pt; margin: 0pt;"&gt;Regards,&lt;/P&gt;&lt;P style="padding: 0pt; margin: 0pt;"&gt;Aditya&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 24 Jun 2011 15:50:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/block-ip-address-from-outside-interface/m-p/1709875#M529300</guid>
      <dc:creator>advijay</dc:creator>
      <dc:date>2011-06-24T15:50:10Z</dc:date>
    </item>
    <item>
      <title>Block IP address from Outside interface</title>
      <link>https://community.cisco.com/t5/network-security/block-ip-address-from-outside-interface/m-p/1709876#M529302</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Since the attack has already taken place. If you are not allowing these&amp;nbsp; IPs ASA will be blocking them anyways. The best course of action will be to have it blocked upstream and if upstream is your service provider then talk to provider to have the IPs blocked on upstream.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 24 Jun 2011 18:05:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/block-ip-address-from-outside-interface/m-p/1709876#M529302</guid>
      <dc:creator>andhingr</dc:creator>
      <dc:date>2011-06-24T18:05:01Z</dc:date>
    </item>
  </channel>
</rss>

