<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA 5510 + RDP issues in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630145#M592590</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Looks like default gateway for the 192.0.0.0/24 subnet might have been the ASA and by configuring "set connection advanced-options tcp-state-bypass", RDP will work. You can configure "set connection advanced-options tcp-state-bypass" but don't configure "inspect ftp" as you have configured previously, ie: just re-add "set connection advanced-options tcp-state-bypass" into the class class-default, however, don't worry about the "inspect ftp".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;that should resolve the issue.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 05 Feb 2011 12:12:54 GMT</pubDate>
    <dc:creator>Jennifer Halim</dc:creator>
    <dc:date>2011-02-05T12:12:54Z</dc:date>
    <item>
      <title>ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630140#M592583</link>
      <description>&lt;P&gt;Hi all&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;A while back I had a problem with using active ftp trough our ASA 5510.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks to he help on this forum, the problem got solved.&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Topic: &lt;/SPAN&gt;&lt;A class="jive-link-thread-small" href="https://community.cisco.com/thread/2053280" target="_blank"&gt;https://supportforums.cisco.com/thread/2053280&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now active ftp works fine, but now we are not able to use RDP to clients/server to other subnets.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If anyone has an idea, please let me know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Bert&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:45:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630140#M592583</guid>
      <dc:creator>Bert Kelchtermans</dc:creator>
      <dc:date>2019-03-11T19:45:14Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630141#M592584</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can you please advise where you are trying to RDP to and from? If you can share the subnets that you are trying to RDP to and from, we can check the configuration to make sure whether it is config error or it might be something else. Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 05 Feb 2011 10:36:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630141#M592584</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-02-05T10:36:07Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630142#M592586</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ok, It happens we try to use RD between the 192.0.0.0, 192.0.2.0, 192.0.4.0, 192.0.6.0 subnets.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards, Bert&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 05 Feb 2011 10:50:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630142#M592586</guid>
      <dc:creator>Bert Kelchtermans</dc:creator>
      <dc:date>2011-02-05T10:50:09Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630143#M592588</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;All those subnets are actually behind the ASA, and it doesn't pass through the ASA at all therefore, RDP between the subnets should works.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would check if personal firewall is enabled on the RDP server as that is one of the issue that blocks inbound RDP access. Please turn off the firewall and test the connectivity again. Further to that, please also check if RDP service has been enabled.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 05 Feb 2011 11:06:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630143#M592588</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-02-05T11:06:57Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630144#M592589</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ok, let me explain, RDP always worked as desired until I changed the settings to allow active ftp&lt;/P&gt;&lt;P&gt;as suggsted in this topic: &lt;A href="https://community.cisco.com/thread/2053280"&gt;https://supportforums.cisco.com/thread/2053280&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now active FTP works, RDP doesn't.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When I configure:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #3366ff;"&gt;class class-default&lt;BR /&gt;&amp;nbsp; set connection advanced-options tcp-state-bypass&lt;BR /&gt;&amp;nbsp; inspect ftp &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;RDP works, connecting to a FTPserver with active FTP fails.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The configuration of the servers, and their firewalls haven't changed.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks, Bert&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 05 Feb 2011 11:55:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630144#M592589</guid>
      <dc:creator>Bert Kelchtermans</dc:creator>
      <dc:date>2011-02-05T11:55:35Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630145#M592590</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Looks like default gateway for the 192.0.0.0/24 subnet might have been the ASA and by configuring "set connection advanced-options tcp-state-bypass", RDP will work. You can configure "set connection advanced-options tcp-state-bypass" but don't configure "inspect ftp" as you have configured previously, ie: just re-add "set connection advanced-options tcp-state-bypass" into the class class-default, however, don't worry about the "inspect ftp".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;that should resolve the issue.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 05 Feb 2011 12:12:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630145#M592590</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-02-05T12:12:54Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630146#M592591</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I configured the ASA as suggested, but active ftp still doesn't work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you have anymore idea's please let me know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Feb 2011 08:40:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630146#M592591</guid>
      <dc:creator>Bert Kelchtermans</dc:creator>
      <dc:date>2011-02-09T08:40:47Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630147#M592592</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can you please add the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;BR /&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; inspect ftp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is the RDP working now?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Feb 2011 10:16:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630147#M592592</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-02-09T10:16:08Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630148#M592593</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;RDP is working even without&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;BR /&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; inspect ftp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now my previous problem of the active FTP has returned.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;With the asa 5510 as default gateway, we are unable to use active ftp.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Feb 2011 10:26:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630148#M592593</guid>
      <dc:creator>Bert Kelchtermans</dc:creator>
      <dc:date>2011-02-09T10:26:23Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630149#M592594</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN&gt;How did the active FTP issue get resolved last time? I checked the forum: &lt;/SPAN&gt;&lt;A class="jive-link-thread-small" href="https://community.cisco.com/thread/2053280"&gt;https://supportforums.cisco.com/thread/2053280&lt;/A&gt;&lt;SPAN&gt; however, I don't see any confirmation nor what has resolved the issue of active FTP.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As KS has suggested, did removing the following resolve the issue:&lt;/P&gt;&lt;P&gt;I am not sure what this below section is doing in the config.&amp;nbsp; I'd remove it.&lt;BR /&gt;&lt;SPAN style="color: #3366ff;"&gt; class class-default&lt;BR /&gt;&amp;nbsp; set connection advanced-options tcp-state-bypass&lt;BR /&gt;&amp;nbsp; inspect ftp &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;BR /&gt;class class-default&lt;BR /&gt; no&amp;nbsp; set connection advanced-options tcp-state-bypass&lt;BR /&gt;&amp;nbsp; no&amp;nbsp; inspect ftp&lt;/P&gt;&lt;P&gt;exit&lt;/P&gt;&lt;P&gt;no class class-default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There is no inspection for RDP, so RDP should have worked despite any changes to the FTP configuration because they are running on different ports.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Feb 2011 10:34:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630149#M592594</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-02-09T10:34:06Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630150#M592595</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When i remove those lines RDP from the 192.0.0.0 subnet to the 192.0.2.0, 192.0.4.0, 192.0.6.0 is not possible.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards, Bert&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Feb 2011 11:05:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630150#M592595</guid>
      <dc:creator>Bert Kelchtermans</dc:creator>
      <dc:date>2011-02-09T11:05:14Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630151#M592596</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It should work just fine if you change the default gateway for hosts in the 192.0.0.0/24 subnet from 192.0.0.40 to 192.0.0.187.&lt;/P&gt;&lt;P&gt;And on the 192.0.0.187 router, configure its default gateway to be 192.0.0.40.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 10 Feb 2011 04:41:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630151#M592596</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-02-10T04:41:52Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630152#M592597</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The router with the address 192.0.0.187, isn't used in our internal network, it is a router&lt;/P&gt;&lt;P&gt;placed by one of out manufacturers to monitor some machines.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We do not control it, and do not use it, I just had to forward some ports to it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The internal network uses the 192.0.0.40 as default gateway.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 10 Feb 2011 07:34:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630152#M592597</guid>
      <dc:creator>Bert Kelchtermans</dc:creator>
      <dc:date>2011-02-10T07:34:16Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 + RDP issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630153#M592598</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Actually, sorry, i was wrong earlier, you should change the default gateway to 192.0.0.25 instead. This will be the correct router as all the192.0.2.0/24, 192.0.4.0/24 and 192.0.6.0/24 are being forwarded to 192.0.0.25 as follows on the firewall:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route inside 192.0.2.0 255.255.255.0 192.0.0.25 1&lt;BR /&gt;route inside 192.0.4.0 255.255.255.0 192.0.0.25 1&lt;BR /&gt;route inside 192.0.6.0 255.255.255.0 192.0.0.25 1&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 10 Feb 2011 07:40:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-rdp-issues/m-p/1630153#M592598</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-02-10T07:40:15Z</dc:date>
    </item>
  </channel>
</rss>

