<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA 5505 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633598#M595070</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Anthony&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is the IP address of your computer? Your computer should be on the inside in order to try to access the ASDM and should have an IP address on the range of 10.40.234.0/24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are doing it form the inside and you have an IP address on your computer on the range of 10.40.234.0 you need the following line&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ciscoasa(config)#http server 0 0 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;let me know how it goes&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 10 Jan 2011 18:00:59 GMT</pubDate>
    <dc:creator>Maykol Rojas</dc:creator>
    <dc:date>2011-01-10T18:00:59Z</dc:date>
    <item>
      <title>ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633585#M595047</link>
      <description>&lt;P&gt;Hey Everybody,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My network runs through an ASA 5505.&amp;nbsp; I recently started as the sole administrator at a small business and believe it or not, the previous administrator had documented absolutely nothing.&amp;nbsp; Therefore I have no idea on how to access my device short of bringing it down and reconfiguring it.&amp;nbsp; This being said, I have a few questions that hopefully someone can answer.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;1. How can I identify what IP address the ASA resides on?&amp;nbsp; Is it the same as my default gateway?&amp;nbsp; I've read that you can access it via a web shell if you browse to &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://xxx.xxx.xxx.xxx/admin" target="_blank"&gt;https://xxx.xxx.xxx.xxx/admin&lt;/A&gt;&lt;SPAN&gt; although this might only be the case after you have installed the ASDM software on the local machine.&amp;nbsp; I understand that the default is 192.168.1.1, but I'm sure this is not the case in my network because my wireless router uses that IP.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. Is there a default username and password to use if I get to the administrator screen?&amp;nbsp; If I cannot find this, am I stuck having to reset the device or is there a way to reset it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3. Can you access it through a domain attached computer or do I need to network to it directly through an ethernet cable?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for any help, and feel free to add anything that I might have not thought of and left out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anthony&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:31:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633585#M595047</guid>
      <dc:creator>pastoralsolutions</dc:creator>
      <dc:date>2019-03-11T19:31:21Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633586#M595048</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;1) The only way to identify the ip address of the ASA is to check the configuration, so a couple of tips:&lt;/P&gt;&lt;P&gt;- Does the previous admin has a topology diagram that might have the ASA ip address?&lt;/P&gt;&lt;P&gt;- Does the previous admin happen to have a copy of the ASA configuration somewhere?&lt;/P&gt;&lt;P&gt;- Does anyone else happen to know the ASA ip address?&lt;/P&gt;&lt;P&gt;- I would try to see if you can console into the ASA (maybe the console is not configured with any user password) and at least you can get the bare minimum output from the ASA&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2) The default from Cisco would be username: pix and password: cisco, or you can also try username --&amp;gt; blank (nothing type in), with password: cisco. However I doubt that it will be left as default (but you might be lucky).&lt;/P&gt;&lt;P&gt;Here is the procedure to reset the password:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa71/configuration/guide/trouble.html#wp1049302"&gt;http://www.cisco.com/en/US/docs/security/asa/asa71/configuration/guide/trouble.html#wp1049302&lt;/A&gt;&lt;/P&gt;&lt;P&gt;(pls carefully follow the procedure step by step)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;BTW, do you know which version the ASA 5505 is running?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3) You can access the ASA from your network as long as the ASA is configured to allow access from a certain ip address or subnet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that provides you with something to start with.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Jan 2011 21:56:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633586#M595048</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-01-06T21:56:32Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633587#M595050</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you for your reply.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Unfortunately I have no documentation whatsoever except for one text file explaining how to log into the VPN.&amp;nbsp; Actually, that's how all of this started - I need to manage the VPN users.&amp;nbsp; Other than that, I think it's good for the network admin to know how to access the firewall!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Would connecting with a VPN client lend any information about the ASA IP address?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am still waiting to get my license info from CDW where we bought the unit so I can relate it to my online account.&amp;nbsp; It is unfortunate that I have to go through all of this just to download the administrator software.&amp;nbsp; Hopefully once I get hold of that I can try a few IP addresses and maybe get lucky.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anthony&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Jan 2011 22:12:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633587#M595050</guid>
      <dc:creator>pastoralsolutions</dc:creator>
      <dc:date>2011-01-06T22:12:07Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633588#M595051</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I actually just came across a config file dug up from an email on the old admins account.&amp;nbsp; config-log.txt&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm not quite sure what I'm looking at, but there is a portion that reads:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;ciscoasa# config t&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;ciscoasa(config)# int vlan3&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;ciscoasa(config-if)# ipaddress 192.168.0.66 255.255.255.0&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;ciscoasa(config-if)# nat (dmz) 192.168.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is this the IP of my ASA?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Jan 2011 22:35:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633588#M595051</guid>
      <dc:creator>pastoralsolutions</dc:creator>
      <dc:date>2011-01-06T22:35:26Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633589#M595052</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That is one of the ip address of your ASA. It's the ip address of your ASA DMZ interface. Are you able to access 192.168.0.66 from the 192.168.0.0/24 subnet?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 07 Jan 2011 02:44:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633589#M595052</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-01-07T02:44:51Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633590#M595053</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;and the IP Address where the VPN Client is connecting to is normally the ASA outside interface ip address. Try to see if you are able to access that ip address from the Internet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also try to access the ip address of the default gateway configured on your user PC, it is a possibility that it's the ASA inside interface ip address.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 07 Jan 2011 02:47:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633590#M595053</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-01-07T02:47:34Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633591#M595054</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Have you tried a ping sweep to locate the device?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, on an ASA 5505&lt;/P&gt;&lt;P&gt;Int vlan1 will have the priavte ip address for the firewall&lt;/P&gt;&lt;P&gt;Int vlan2 will have the public&lt;/P&gt;&lt;P&gt;From the post it seems like you are looking for the private. I would do a ping sweep and go from there.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 07 Jan 2011 18:01:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633591#M595054</guid>
      <dc:creator>Scott Payne</dc:creator>
      <dc:date>2011-01-07T18:01:46Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633592#M595055</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Okay, I think I have figured out what the inside and outside IP addresses are of the ASA device.&amp;nbsp; I&lt;/P&gt;&lt;P&gt; can use hyperterminal to connect to the IP, and I found that my version is 7.2(4) and device manager is on 5.2(4).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Now I am wondering how to get to the GUI interface.&amp;nbsp; The CLI is more difficult to navigate.&amp;nbsp; I try the IPs as &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://10.40.234.1/admin"&gt;https://10.40.234.1/admin&lt;/A&gt;&lt;SPAN&gt; and it gives me nothing.&amp;nbsp; Tried the other IP as well, and with both https and http in the URL.&amp;nbsp; How can I get into the web interface?&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 17:03:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633592#M595055</guid>
      <dc:creator>pastoralsolutions</dc:creator>
      <dc:date>2011-01-10T17:03:12Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633593#M595056</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;First You need to check if you have an ASDM image and if you have access to the ASA via http, you can check&lt;BR /&gt;that using the following commands&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sh run http, On this ouput, you can check if your IP address from the machine you are trying to connect to &lt;BR /&gt;is listed&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sh run asdm, this output will show you wich ASDM image you are going to use.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;In case you dont have any of that configure, you can do the following&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ciscoasa(config)#http server enable &lt;BR /&gt;ciscoasa(config)#http server &lt;IP_ADDRESS&gt; &lt;MASK&gt;&lt;/MASK&gt;&lt;/IP_ADDRESS&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you dont have an ASDM image on flash, you can use the following link in order to upload one&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008067e9f9.shtml#maintask2"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008067e9f9.shtml#maintask2&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, you can follow the next chart to see which ASDM image you need to use&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/compatibility/asamatrx.html"&gt;http://www.cisco.com/en/US/docs/security/asa/compatibility/asamatrx.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope it helps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 17:29:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633593#M595056</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-01-10T17:29:24Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633594#M595057</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, this does help.&amp;nbsp; Here is the output:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ciscoasa(config)# sh run http&lt;BR /&gt;http server enable&lt;BR /&gt;http 192.168.1.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ciscoasa(config)# sh run asdm&lt;BR /&gt;asdm image disk0:/asdm-524.bin&lt;BR /&gt;no asdm history enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;So should I be able to access this via &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://192.168.1.0/admin"&gt;https://192.168.1.0/admin&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp; ?&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 17:38:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633594#M595057</guid>
      <dc:creator>pastoralsolutions</dc:creator>
      <dc:date>2011-01-10T17:38:49Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633595#M595059</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Not exactly, that statement says which IP addresses are able to ASDM to the device. Meaning that from the network&amp;nbsp; 192.168.1.0 (say computer 192.168.1.2) you can access the device using the IP address of the inside interface of the firewall. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can check what is the inside IP address of the firewall using the command "sh run interface", use that IP as follow&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="https://"&gt;https://&lt;/A&gt;&lt;SPAN&gt;&lt;INSIDE_IP_FIREWALL&gt;&lt;/INSIDE_IP_FIREWALL&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know how it goes&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 17:44:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633595#M595059</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-01-10T17:44:33Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633596#M595061</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here is the output:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nameif inside&lt;BR /&gt; security-level 100&lt;BR /&gt; ip address 10.40.234.1 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface Vlan2&lt;BR /&gt; nameif outside&lt;BR /&gt; security-level 0&lt;BR /&gt; ip address xxx.xxx.xxx.xxx 255.255.255.248&lt;BR /&gt;!&lt;BR /&gt;interface Vlan3&lt;BR /&gt; no forward interface Vlan1&lt;BR /&gt; nameif dmz&lt;BR /&gt; security-level 50&lt;BR /&gt; ip address 192.168.0.66 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I tried &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://10.40.234.1"&gt;https://10.40.234.1&lt;/A&gt;&lt;SPAN&gt; and the connection times out.&amp;nbsp; Any idea what I am doing wrong here?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for all your help,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anthony&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 17:51:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633596#M595061</guid>
      <dc:creator>pastoralsolutions</dc:creator>
      <dc:date>2011-01-10T17:51:26Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633597#M595063</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ah, didn't read that fully.&amp;nbsp; I have to connect from a computer with IP from 192.168.1.x&lt;/P&gt;&lt;P&gt;I'll try that and let you know what happens.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 17:56:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633597#M595063</guid>
      <dc:creator>pastoralsolutions</dc:creator>
      <dc:date>2011-01-10T17:56:06Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633598#M595070</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Anthony&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is the IP address of your computer? Your computer should be on the inside in order to try to access the ASDM and should have an IP address on the range of 10.40.234.0/24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are doing it form the inside and you have an IP address on your computer on the range of 10.40.234.0 you need the following line&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ciscoasa(config)#http server 0 0 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;let me know how it goes&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 18:00:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633598#M595070</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-01-10T18:00:59Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633599#M595074</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Slowly but surely this is starting to make more sense to me.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am on a computer that has IP of 10.40.234.66.&amp;nbsp; Here is the output of the http server command:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ciscoasa(config)# http server 0 0 inside&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ^&lt;BR /&gt;ERROR: % Invalid Hostname&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 18:09:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633599#M595074</guid>
      <dc:creator>pastoralsolutions</dc:creator>
      <dc:date>2011-01-10T18:09:05Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633600#M595076</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That or forget me for the typo mistake, the statement is the following&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ciscoasa(config)# http 0 0 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 18:16:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633600#M595076</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-01-10T18:16:42Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633601#M595079</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Anthony,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;start with some basics. From your telnet session run:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; &lt;STRONG&gt;ASA5505# show ip address&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/STRONG&gt;will show you the ip addresses on the firewall along with the interface names&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;once you know which IP's are on which interfaces you can start formulating a map of what's where, since it seems from your previous posts that there are multiple networks already configured.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; &lt;STRONG&gt;ASA5505# show run | incl 192.168.1&amp;nbsp;&amp;nbsp; &lt;/STRONG&gt;parses the show run result for any occurences of '192.168.1'&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;looking through the results you should see a line that references an interface similar to ' ip address inside 192.168.1.253 255.255.255.0 ....' ASDM (http) are enabled only on the&amp;nbsp; 192.168.1.0 network if I read through the previous posts correctly. If you don't see any interfaces with an IP in this range you won't be able to access ASDM until you've allowed it. If this doesn't make&amp;nbsp; sense let us know and well help some more.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;From your posts it's pretty clear that you have a login for telent. You'll also need to have an enable login before you can make changes. If you don't have that you'll need to reset enable before you can make configuration changes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm sorry your previous admin didn't leave notes - been in that situation a couple times now myself and it's never fun.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 18:18:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633601#M595079</guid>
      <dc:creator>srkrehlik</dc:creator>
      <dc:date>2011-01-10T18:18:27Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633602#M595080</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ciscoasa(config)# show running-config | incl 192.168.1&lt;BR /&gt;http 192.168.1.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ciscoasa(config)# show running-config | incl 10.40.23&lt;BR /&gt; ip address 10.40.234.1 255.255.255.0&lt;BR /&gt;access-list test_splitTunnelAcl standard permit 10.40.234.0 255.255.255.0&lt;BR /&gt;access-list inside_nat0_outbound extended permit ip 10.40.234.0 255.255.255.0 10&lt;BR /&gt;.40.234.240 255.255.255.240&lt;BR /&gt;access-list inside_nat0_outbound extended permit ip any 10.40.234.240 255.255.25&lt;BR /&gt;5.240&lt;BR /&gt;ip local pool vpnippool 10.40.234.240-10.40.234.254 mask 255.255.255.0&lt;BR /&gt;static (inside,outside) 65.23.24.18 10.40.234.12 netmask 255.255.255.255 dns&lt;BR /&gt;aaa-server vpnauth (inside) host 10.40.234.22&lt;BR /&gt;aaa-server vpnauth (inside) host 10.40.234.23&lt;BR /&gt; dns-server value 10.40.234.22&lt;BR /&gt; dns-server value 10.40.234.22&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am still not sure how to tell if my ASDM is enabled or which IP address to use to get to it if I am on an inside machine, on the 10.40.234.xxx network. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have also recently installed a new DNS server at 10.40.234.23 and want to get rid of the 10.40.234.22.&amp;nbsp; You can see I added it as the aaa-server.&amp;nbsp; The problem is that my VPN users automatically bind to 10.40.234.22 when they connect, but I want to take that server offline.&amp;nbsp; Is there an easy set of commands to swap the IPs out?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You guys are lifesavers!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 18:49:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633602#M595080</guid>
      <dc:creator>pastoralsolutions</dc:creator>
      <dc:date>2011-01-10T18:49:46Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633603#M595081</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Anthony,&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;We just resolved a similar issue read here: &lt;/SPAN&gt;&lt;A class="jive-link-message-small" href="https://community.cisco.com/message/3266002#3266002"&gt;https://supportforums.cisco.com/message/3266002#3266002&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We followed the document that I had written which you can see here: &lt;SPAN&gt; &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://cisco-support.hosted.jivesoftware.com/docs/DOC-13012"&gt;https://cisco-support.hosted.jivesoftware.com/docs/DOC-13012&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let us go through the checklist and see if we can solve your problem as well.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 19:59:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633603#M595081</guid>
      <dc:creator>Kureli Sankar</dc:creator>
      <dc:date>2011-01-10T19:59:39Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633604#M595082</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi again Anthony,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it looks like the 'show run...' gave you some good detail. As you can see the only thing that's using the 192.168.1.0 network is the http server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There is a post a bit higher up about adding an http command to the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; &lt;STRONG&gt;ciscoasa# conf t&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&amp;nbsp; ciscoasa(config)# http 10.40.234.0 255.255.255.0 inside&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;and since we're in config already try...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&amp;nbsp; &lt;/STRONG&gt;&lt;STRONG&gt;ciscoasa(config)# dns-server value 10.40.234.23&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;that should allow you to connect to the ASA and start getting ASDM set up using &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://10.40.234.1/"&gt;http://10.40.234.1/&lt;/A&gt;&lt;SPAN&gt; from a PC on the 10.40.234.0 network. It will also add the 10.4.234.23 as a dns-server value.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Jan 2011 20:02:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505/m-p/1633604#M595082</guid>
      <dc:creator>srkrehlik</dc:creator>
      <dc:date>2011-01-10T20:02:22Z</dc:date>
    </item>
  </channel>
</rss>

