<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASDM Problem in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395793#M728662</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;When you issue sh ver you do see the following right?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco Adaptive Security Appliance Software Version 8.2(1)&lt;/P&gt;&lt;P&gt;Device Manager Version 6.2(5)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Compiled on Tue 05-May-09 22:45 by builders&lt;/P&gt;&lt;P&gt;System image file is "disk0:/asa821-k8.bin"&amp;nbsp; ---------------------------&amp;gt; it should indicate the asdm file loaded.&lt;/P&gt;&lt;P&gt;Config file at boot was "startup-config"&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;VPN-3DES-AES&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : Enabled&amp;nbsp;&amp;nbsp;&amp;nbsp; ----------------&amp;gt; this should be enabled&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725012: Device chooses cipher : DES-CBC3-SHA for the SSL session with client inside:10.11.12.83/4470&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Make sure when you issue "sh run ssl" or "sh run all | i ssl" shows the following&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ssl encryption aes256-sha1 aes128-sha1 3des-sha1 des-sha1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If not add the above line to the config.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 14 Mar 2010 15:00:58 GMT</pubDate>
    <dc:creator>Kureli Sankar</dc:creator>
    <dc:date>2010-03-14T15:00:58Z</dc:date>
    <item>
      <title>ASDM Problem</title>
      <link>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395788#M728657</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have ASA 5510 and tried to login to through ASDM, but we are receiving the following error's.&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Enabled http server&lt;/LI&gt;&lt;LI&gt;Enabled http any for the requesting interface.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Following are the debug messages collected.&amp;nbsp; Thanks in advance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;=========================================================================================================&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-session-7-609001: Built local-host inside:10.11.12.83&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:23 IST: %ASA-session-6-302013: Built inbound TCP connection 594094 for inside:10.11.12.83/4470 (10.11.12.83/4470) to NP Identity Ifc:FWALL/443 (FWALL/443)&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-session-7-710002: TCP access permitted from 10.11.12.83/4470 to inside:FWALL/https&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-6-725001: Starting SSL handshake with client inside:10.11.12.83/4470 for SSLv3 session.&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725010: Device supports the following 2 cipher(s).&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[1] : DES-CBC3-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[2] : AES256-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725008: SSL client inside:10.11.12.83/4470 proposes the following 15 cipher(s).&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[1] : RC4-MD5&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[2] : RC4-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[3] : AES128-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[4] : DHE-RSA-AES128-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[5] : DHE-DSS-AES128-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[6] : DES-CBC3-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[7] : EDH-RSA-DES-CBC3-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[8] : EDH-DSS-DES-CBC3-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[9] : DES-CBC-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[10] : EDH-RSA-DES-CBC-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[11] : EDH-DSS-DES-CBC-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[12] : EXP-RC4-MD5&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[13] : EXP-DES-CBC-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[14] : EXP-EDH-RSA-DES-CBC-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725011: Cipher[15] : EXP-EDH-DSS-DES-CBC-SHA&lt;BR /&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725012: Device chooses cipher : DES-CBC3-SHA for the SSL session with client inside:10.11.12.83/4470&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:24 IST: %ASA-ssl-6-725002: Device completed SSL handshake with client inside:10.11.12.83/4470&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:24 IST: %ASA-sys-6-605005: Login permitted from 10.11.12.83/4470 to inside:FWALL/https for user "admin"&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:24 IST: %ASA-ssl-6-725007: SSL session with client inside:10.11.12.83/4470 terminated.&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:25 IST: %ASA-session-6-302013: Built inbound TCP connection 594095 for inside:10.11.12.83/4472 (10.11.12.83/4472) to NP Identity Ifc:FWALL/443 (FWALL/443)&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:25 IST: %ASA-ssl-6-725001: Starting SSL handshake with client inside:10.11.12.83/4472 for SSLv3 session.&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:25 IST: %ASA-ssl-6-725003: SSL client inside:10.11.12.83/4472 request to resume previous session.&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:26 IST: %ASA-ssl-6-725002: Device completed SSL handshake with client inside:10.11.12.83/4472&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:26 IST: %ASA-sys-6-605005: Login permitted from 10.11.12.83/4472 to inside:FWALL/https for user "admin"&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:26 IST: %ASA-ssl-6-725007: SSL session with client inside:10.11.12.83/4472 terminated.&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:27 IST: %ASA-session-6-302014: Teardown TCP connection 594095 for inside:10.11.12.83/4472 to NP Identity Ifc:FWALL/443 duration 0:00:01 bytes 926 TCP FINs&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:27 IST: %ASA-session-6-302013: Built inbound TCP connection 594096 for inside:10.11.12.83/4473 (10.11.12.83/4473) to NP Identity Ifc:FWALL/443 (FWALL/443)&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:27 IST: %ASA-ssl-6-725001: Starting SSL handshake with client inside:10.11.12.83/4473 for SSLv3 session.&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:27 IST: %ASA-ssl-6-725003: SSL client inside:10.11.12.83/4473 request to resume previous session.&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:28 IST: %ASA-ssl-6-725002: Device completed SSL handshake with client inside:10.11.12.83/4473&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:28 IST: %ASA-sys-6-605005: Login permitted from 10.11.12.83/4473 to inside:FWALL/https for user "admin"&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:28 IST: %ASA-ssl-6-725007: SSL session with client inside:10.11.12.83/4473 terminated.&lt;BR /&gt;&amp;lt;182&amp;gt;:Mar 12 07:29:32 IST: %ASA-session-6-302014: Teardown TCP connection 594094 for inside:10.11.12.83/4470 to NP Identity Ifc:FWALL/443 duration 0:00:08 bytes 1614 TCP FINs&lt;/P&gt;&lt;P&gt;=========================================================================================================&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 17:20:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395788#M728657</guid>
      <dc:creator>ydcnetwork</dc:creator>
      <dc:date>2019-03-11T17:20:59Z</dc:date>
    </item>
    <item>
      <title>Re: ASDM Problem</title>
      <link>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395789#M728658</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What happens exactly when you try to launch ASDM?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you have the ASDM image installed on the flash, and do you have a "asdm image ..." statement in the config?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 12 Mar 2010 21:29:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395789#M728658</guid>
      <dc:creator>Herbert Baerten</dc:creator>
      <dc:date>2010-03-12T21:29:06Z</dc:date>
    </item>
    <item>
      <title>Re: ASDM Problem</title>
      <link>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395790#M728659</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Herbert,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes. Find the output of the flash.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Fwall# sh flash:&lt;BR /&gt;Initializing disk0: cache, please wait....Done.&lt;BR /&gt;-#- --length-- -----date/time------ path&lt;BR /&gt;&amp;nbsp; 6 0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Aug 18 2009 08:58:22 crypto_archive&lt;BR /&gt;&amp;nbsp; 7 6163744&amp;nbsp;&amp;nbsp;&amp;nbsp; Aug 18 2009 09:11:24 asdm-508.bin&lt;BR /&gt; 10 8515584&amp;nbsp;&amp;nbsp;&amp;nbsp; Jan 20 2010 04:44:22 asa724-k8.bin&lt;/P&gt;&lt;P&gt;245374976 bytes available (14770176 bytes used)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When i try the ASDM i get the below error message&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"Unable to launch device manager from XX.XX.XX.XX"&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 13 Mar 2010 07:29:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395790#M728659</guid>
      <dc:creator>ydcnetwork</dc:creator>
      <dc:date>2010-03-13T07:29:13Z</dc:date>
    </item>
    <item>
      <title>Re: ASDM Problem</title>
      <link>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395791#M728660</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ASDM 5.0(8) is a very old version, it is meant to be used with ASA versions 7.0(x).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The newest ASDM version compatible with ASA 7.2 is 5.2(4). I would try to update to that version. Or you could update the ASA to version 8.2(2) and use ASDM 6.2(5).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 13 Mar 2010 16:36:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395791#M728660</guid>
      <dc:creator>Erik Ingeberg</dc:creator>
      <dc:date>2010-03-13T16:36:25Z</dc:date>
    </item>
    <item>
      <title>Re: ASDM Problem</title>
      <link>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395792#M728661</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;ydcnetwork wrote:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hi Herbert,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes. Find the output of the flash.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Fwall# sh flash:&lt;BR /&gt;Initializing disk0: cache, please wait....Done.&lt;BR /&gt;-#- --length-- -----date/time------ path&lt;BR /&gt;&amp;nbsp; 6 0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Aug 18 2009 08:58:22 crypto_archive&lt;BR /&gt;&amp;nbsp; 7 6163744&amp;nbsp;&amp;nbsp;&amp;nbsp; Aug 18 2009 09:11:24 asdm-508.bin&lt;BR /&gt; 10 8515584&amp;nbsp;&amp;nbsp;&amp;nbsp; Jan 20 2010 04:44:22 asa724-k8.bin&lt;/P&gt;&lt;P&gt;245374976 bytes available (14770176 bytes used)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When i try the ASDM i get the below error message&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"Unable to launch device manager from XX.XX.XX.XX"&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;As __Pluppo__ wrote, you'll need to get an ASDM version that is compatible with your ASA version.&lt;/P&gt;&lt;P&gt;You will also need to add a "asdm image disk0:/asdm-xxx.bin" statement in your config.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hth&lt;/P&gt;&lt;P&gt;Herbert&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 14 Mar 2010 14:42:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395792#M728661</guid>
      <dc:creator>Herbert Baerten</dc:creator>
      <dc:date>2010-03-14T14:42:30Z</dc:date>
    </item>
    <item>
      <title>Re: ASDM Problem</title>
      <link>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395793#M728662</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;When you issue sh ver you do see the following right?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco Adaptive Security Appliance Software Version 8.2(1)&lt;/P&gt;&lt;P&gt;Device Manager Version 6.2(5)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Compiled on Tue 05-May-09 22:45 by builders&lt;/P&gt;&lt;P&gt;System image file is "disk0:/asa821-k8.bin"&amp;nbsp; ---------------------------&amp;gt; it should indicate the asdm file loaded.&lt;/P&gt;&lt;P&gt;Config file at boot was "startup-config"&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;VPN-3DES-AES&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : Enabled&amp;nbsp;&amp;nbsp;&amp;nbsp; ----------------&amp;gt; this should be enabled&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;183&amp;gt;:Mar 12 07:29:23 IST: %ASA-ssl-7-725012: Device chooses cipher : DES-CBC3-SHA for the SSL session with client inside:10.11.12.83/4470&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Make sure when you issue "sh run ssl" or "sh run all | i ssl" shows the following&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ssl encryption aes256-sha1 aes128-sha1 3des-sha1 des-sha1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If not add the above line to the config.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 14 Mar 2010 15:00:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-problem/m-p/1395793#M728662</guid>
      <dc:creator>Kureli Sankar</dc:creator>
      <dc:date>2010-03-14T15:00:58Z</dc:date>
    </item>
  </channel>
</rss>

