<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA Setup HELP - SSL in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-setup-help-ssl/m-p/1787806#M532116</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When you mean setting up SSL, the concept is too big, can mean SSLVPN, WebVPN, ASDM etc. Are you trying to setup ASDM to manage your device, or are you trying to configure a VPN anyconnect so you can manage your device? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks! &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 31 Aug 2011 18:03:39 GMT</pubDate>
    <dc:creator>Maykol Rojas</dc:creator>
    <dc:date>2011-08-31T18:03:39Z</dc:date>
    <item>
      <title>ASA Setup HELP - SSL</title>
      <link>https://community.cisco.com/t5/network-security/asa-setup-help-ssl/m-p/1787805#M532115</link>
      <description>&lt;P&gt;I am trying to setup SSL so I can manage my ASA via any internet browser on my network.&amp;nbsp; I am new to the cisco world, but I think I have most of it down.&amp;nbsp; When I try to log into the ASA via firefox I get:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cannot communicate securely with peer: no common encryption algorithm(s).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(Error code: ssl_error_no_cypher_overlap)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Below is my current config ( I have a lot of extra info that populates everytime I enter a command, not sure what I turned on, but if you have a fix to clear that as well, I would apprciate it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA Version 8.2(3)wn coldstart' comm&lt;/P&gt;&lt;P&gt;!d&lt;/P&gt;&lt;P&gt;hostname Wood-ASA1-if&lt;/P&gt;&lt;P&gt;%ASA-5-111008:&lt;/P&gt;&lt;P&gt;domain-name lv.cox.net the 'inspect ip-optio&lt;/P&gt;&lt;P&gt;enable password 8Ry2YjIyt7RRXU24 encrypted8cb69fe 20cfb60adisk0:/asa823.bin&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;%&lt;/P&gt;&lt;P&gt;passwd 2KFQnbNIdI.2KYOU encrypteded the 'service-policy global_pol&lt;/P&gt;&lt;P&gt;namesobal'&lt;/P&gt;&lt;P&gt;!a&lt;/P&gt;&lt;P&gt;interface Ethernet0/0in&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ^&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt; switchport access vlan 2%ASA-5-&lt;/P&gt;&lt;P&gt;command.ser 'Con&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!S&lt;/P&gt;&lt;P&gt;interface Ethernet0/1ig' executed the 'pro&lt;/P&gt;&lt;P&gt;!t&lt;/P&gt;&lt;P&gt;interface Ethernet0/2mand.tics access-lirv&lt;/P&gt;&lt;P&gt;!-&lt;/P&gt;&lt;P&gt;interface Ethernet0/3 securi&lt;/P&gt;&lt;P&gt;rd DfltAccess&lt;/P&gt;&lt;P&gt;!l&lt;/P&gt;&lt;P&gt;interface Etherne&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;interface Vlan1ecuted the 'pro&lt;/P&gt;&lt;P&gt; nameif inside' command.omma&lt;/P&gt;&lt;P&gt; security-level 100&lt;/P&gt;&lt;P&gt;%ASA-5-111008: Use&lt;/P&gt;&lt;P&gt; ip address 192.168.1.1 255.255.255.01008: User 'Config' executed the 'no &lt;/P&gt;&lt;P&gt;!t&lt;/P&gt;&lt;P&gt;interface Vlan2 the '&lt;/P&gt;&lt;P&gt;%ASA-5-1&lt;/P&gt;&lt;P&gt; nameif outsidefig' executed t&lt;/P&gt;&lt;P&gt; security-level 0-5-111008: User '&lt;/P&gt;&lt;P&gt; ip address dhcp setrouteination address http http&lt;/P&gt;&lt;P&gt;!/&lt;/P&gt;&lt;P&gt;boot system disk0:/asa823-k8.bing' executed the 'class-map inspe&lt;/P&gt;&lt;P&gt;boot config disk0:/asa823.binom/its/service/oddce/services&lt;/P&gt;&lt;P&gt;ftp mode passivemand. User 'Conf&lt;/P&gt;&lt;P&gt;dns server-group DefaultDNS User 'Config' execut&lt;/P&gt;&lt;P&gt;%ASA-&lt;/P&gt;&lt;P&gt; domain-name lv.cox.netexecuted the 'destinati&lt;/P&gt;&lt;P&gt;object-group icmp-type ICMP-INBOUNDation linkup linkdown coldstart' co&lt;/P&gt;&lt;P&gt; description Permit necessary inbound ICMP trafficand.'policy-map type &lt;/P&gt;&lt;P&gt;%ASA-5-111008: User 'Config'&lt;/P&gt;&lt;P&gt; icmp-object echo-replyon transport-method htt&lt;/P&gt;&lt;P&gt; icmp-object unreachable&lt;/P&gt;&lt;P&gt;s_map' command.t&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; icmp-object t&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;%ASA-&lt;/P&gt;&lt;P&gt;logging buffered warningsecuted the 'subscribe-to-&lt;/P&gt;&lt;P&gt;logging asdm notificationsxecuted t&lt;/P&gt;&lt;P&gt;%ASA-5-111008: U&lt;/P&gt;&lt;P&gt;mtu inside 1500cuted the 'poli&lt;/P&gt;&lt;P&gt;mtu outside 1500ct &lt;/P&gt;&lt;P&gt;riodic month&lt;/P&gt;&lt;P&gt;icmp unreachable rate-limit 1 burst-size 1-111008: User 'Config' executed the 'subsc&lt;/P&gt;&lt;P&gt;asdm image disk0:/asdm-625.bino5-111008: User 'Config' execu&lt;/P&gt;&lt;P&gt;no asdm history enablemmand.outside' command&lt;/P&gt;&lt;P&gt;arp timeout 14400monthly' command.&lt;/P&gt;&lt;P&gt;nat-control&lt;/P&gt;&lt;P&gt;%ASA-5-111&lt;/P&gt;&lt;P&gt;global (outside) 1 interfacenfig' executed the 'subscrib&lt;/P&gt;&lt;P&gt;nat (inside) 1 0.0.0.0 0.0.0.0andasa# threat-detec&lt;/P&gt;&lt;P&gt;d.n &lt;/P&gt;&lt;P&gt;%ASA&lt;/P&gt;&lt;P&gt;access-group INBOUND in interface outside08: Us&lt;/P&gt;&lt;P&gt;riodic daily' command.e&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;timeout xlate 3:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;aaa authentication ssh console LOCALe Ethernet0/5, changed state to admi&lt;/P&gt;&lt;P&gt;http server enableas&lt;/P&gt;&lt;P&gt;%ASA-5-111008: &lt;/P&gt;&lt;P&gt;http 192.168.1.0 255.255.255.0 inside' executed the&lt;/P&gt;&lt;P&gt;%ASA-4-411003: Interfa&lt;/P&gt;&lt;P&gt;no snmp-server locationstate to administra con&lt;/P&gt;&lt;P&gt;no snmp-server contact&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;telnet timeout 5# nat-contr&lt;/P&gt;&lt;P&gt;%ASA&lt;/P&gt;&lt;P&gt;ssh 0.0.0.0 0.0.0.0 insideec&lt;/P&gt;&lt;P&gt;%ASA-4-411001: Line pro&lt;/P&gt;&lt;P&gt;ssh 0.0.0.0 0.0.0.0 outside/3, changed state to upomma&lt;/P&gt;&lt;P&gt;ssh timeout 5SA-5-111&lt;/P&gt;&lt;P&gt;%ASA&lt;/P&gt;&lt;P&gt;console timeout 0onfig' executed t&lt;/P&gt;&lt;P&gt;dhcpd dns 8.8.8.8 8.8.4.4ne protocol on Interface &lt;/P&gt;&lt;P&gt;dhcpd auto_config outside to ups_map' com&lt;/P&gt;&lt;P&gt;%ASA-5-1&lt;/P&gt;&lt;P&gt;!0&lt;/P&gt;&lt;P&gt;dhcpd address 192.168.1.2-192.168.1.33 insideommand&lt;/P&gt;&lt;P&gt;enableR: % I&lt;/P&gt;&lt;P&gt;Password:SA-5-1110&lt;/P&gt;&lt;P&gt;Wood-A&lt;/P&gt;&lt;P&gt;dhcpd dns 8.8.8.8 8.8.4.4 interface inside: Uname: enable_15 From: 1 To:pect netbios&lt;/P&gt;&lt;P&gt;dhcpd enable insidescoas&lt;/P&gt;&lt;P&gt;%ASA-5-111008&lt;/P&gt;&lt;P&gt;!U&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;threat-detection basic-threat%ASA-5-111008: User 'enable_1&lt;/P&gt;&lt;P&gt;threat-detection statistics acce &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;.0.0.0 0.0.0.&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; parametersprompt host&lt;/P&gt;&lt;P&gt;&amp;nbsp; message-length maximum client auto1008: User 'enable_15' executed the &lt;/P&gt;&lt;P&gt;&amp;nbsp; message-length maximum 512A-5-111008: User 'Config' ex&lt;/P&gt;&lt;P&gt;policy-map type inspect dns prsent_dns_map 0/0' command. executed the 'inspe&lt;/P&gt;&lt;P&gt;no shut&lt;/P&gt;&lt;P&gt; parametersA-5&lt;/P&gt;&lt;P&gt;Wood-AS&lt;/P&gt;&lt;P&gt;&amp;nbsp; message-length maximum 512 Interface Ethernet0/0, chan&lt;/P&gt;&lt;P&gt;policy-map global_policyg' executed the 'inspect&lt;/P&gt;&lt;P&gt; class inspection_defaultA-5-111008: User 'Con&lt;/P&gt;&lt;P&gt;ini&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect dns preset_dns_map&lt;/P&gt;&lt;P&gt;%ASA-5-111008: User 'enable&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ftpthe 'no shutd&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 h225111008: User 'Confi&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 rasstination address &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rsh1001: Line pr&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ip-options&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;service-policy global_policy global&lt;/P&gt;&lt;P&gt;prompt hostname context&lt;/P&gt;&lt;P&gt;call-home&lt;/P&gt;&lt;P&gt; profile CiscoTAC-1&lt;/P&gt;&lt;P&gt;&amp;nbsp; no active&lt;/P&gt;&lt;P&gt;&amp;nbsp; destination address http &lt;A href="https://tools.cisco.com/its/service/oddce/services/DD" target="_blank"&gt;https://tools.cisco.com/its/service/oddce/services/DD&lt;/A&gt;&lt;/P&gt;&lt;P&gt;CEService&lt;/P&gt;&lt;P&gt;&amp;nbsp; destination address email &lt;A href="mailto:callhome@cisco.com" target="_blank"&gt;callhome@cisco.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; destination transport-method http&lt;/P&gt;&lt;P&gt;&amp;nbsp; subscribe-to-alert-group diagnostic&lt;/P&gt;&lt;P&gt;&amp;nbsp; subscribe-to-alert-group environment&lt;/P&gt;&lt;P&gt;&amp;nbsp; subscribe-to-alert-group inventory periodic monthly&lt;/P&gt;&lt;P&gt;&amp;nbsp; subscribe-to-alert-group configuration periodic monthly&lt;/P&gt;&lt;P&gt;&amp;nbsp; subscribe-to-alert-group telemetry periodic daily&lt;/P&gt;&lt;P&gt;Cryptochecksum:c3a35118ab34143a5e73e414ead343c1&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:18:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-setup-help-ssl/m-p/1787805#M532115</guid>
      <dc:creator>woodjl1650</dc:creator>
      <dc:date>2019-03-11T21:18:59Z</dc:date>
    </item>
    <item>
      <title>ASA Setup HELP - SSL</title>
      <link>https://community.cisco.com/t5/network-security/asa-setup-help-ssl/m-p/1787806#M532116</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When you mean setting up SSL, the concept is too big, can mean SSLVPN, WebVPN, ASDM etc. Are you trying to setup ASDM to manage your device, or are you trying to configure a VPN anyconnect so you can manage your device? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks! &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 31 Aug 2011 18:03:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-setup-help-ssl/m-p/1787806#M532116</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-08-31T18:03:39Z</dc:date>
    </item>
    <item>
      <title>ASA Setup HELP - SSL</title>
      <link>https://community.cisco.com/t5/network-security/asa-setup-help-ssl/m-p/1787807#M532117</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;SSL VPN and VPN anyconnect&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 31 Aug 2011 18:07:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-setup-help-ssl/m-p/1787807#M532117</guid>
      <dc:creator>woodjl1650</dc:creator>
      <dc:date>2011-08-31T18:07:55Z</dc:date>
    </item>
    <item>
      <title>ASA Setup HELP - SSL</title>
      <link>https://community.cisco.com/t5/network-security/asa-setup-help-ssl/m-p/1787808#M532118</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It would be better if you move the case to the VPN forum, they will assist you better. On your configuration, I cannot see anything configured yet. Here is a guide that you can follow: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/svc.html"&gt;http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/svc.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 31 Aug 2011 18:14:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-setup-help-ssl/m-p/1787808#M532118</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-08-31T18:14:34Z</dc:date>
    </item>
  </channel>
</rss>

