<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA ASDM connection problems in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977526#M940768</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yeah!&lt;/P&gt;&lt;P&gt;Worked great, thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can't understand why SSH is enabled on inside interface in default config but not the local authentication of SSH sessions... Whats the point enabling something You cant use?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However, I've learned to:&lt;/P&gt;&lt;P&gt;aaa authentication ssh console LOCAL&lt;/P&gt;&lt;P&gt;before doing anything else on my ASA:s... &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 19 Mar 2008 16:11:35 GMT</pubDate>
    <dc:creator>PeterBodzay</dc:creator>
    <dc:date>2008-03-19T16:11:35Z</dc:date>
    <item>
      <title>ASA ASDM connection problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977520#M940755</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I'm new to ASA and have a question about what alternatives there is to manage the ASA "out of the box".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My problem is that after uppgrading ASDM to 6.0(3) I get the following error message:&lt;/P&gt;&lt;P&gt;"Your ASA Image has a version number 7.2(2) which is not supported by ASDM 6.0(2). Please use Device Mgr 5.2(x)"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've tried downloading and installing ASDM 5.2(3) but when I try to connect it upgrades leaving me stucked with no connection.&lt;/P&gt;&lt;P&gt;The thing I think is making this is: asdm image flash:/asdm-603.bin...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When trying to connect with SSH i recieve a login prompt but can't login with the same password as through ASDM. (are the login options different from ASDM?).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've never needed to connect through terminal and Console: Does the login options (user and pwd) differ in some way from ASDM?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have not changed any settings as far as I know for administrative access more then enabling ASDM for VPN https access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope someone can help me regaining access to my ASA.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 12:19:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977520#M940755</guid>
      <dc:creator>PeterBodzay</dc:creator>
      <dc:date>2019-03-11T12:19:11Z</dc:date>
    </item>
    <item>
      <title>Re: ASA ASDM connection problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977521#M940756</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;First try fixing asdm, go to firewall command line and see where your asdm upgrade image landed "dir", most likely it landed in disk0, if that is the case do " show run | inc asdm" to see current firewall asdm  statement and correct as follows.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;example:&lt;/P&gt;&lt;P&gt;AsAfw# dir&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Directory of disk0:/&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;75     -rwx  6851212     05:22:16 Dec 11 2007  asdm-603.bin&lt;/P&gt;&lt;P&gt;76     -rwx  1868412     09:02:20 Apr 19 2007  securedesktop-asa-3.1.1.29-k9.pkg&lt;/P&gt;&lt;P&gt;77     -rwx  398305      09:02:36 Apr 19 2007  sslclient-win-1.1.0.154.pkg&lt;/P&gt;&lt;P&gt;2      drwx  4096        05:27:40 Dec 11 2007  log&lt;/P&gt;&lt;P&gt;79     -rwx  14635008    05:17:54 Dec 11 2007  asa803-k8.bin&lt;/P&gt;&lt;P&gt;80     drwx  4096        11:00:56 Oct 18 2007  sdesktop&lt;/P&gt;&lt;P&gt;6      drwx  4096        05:28:02 Dec 11 2007  crypto_archive&lt;/P&gt;&lt;P&gt;81     -rwx  545757      08:02:48 Jan 04 2008  rdp-plugin.jar&lt;/P&gt;&lt;P&gt;82     -rwx  2206269     08:03:34 Jan 04 2008  sslclient-win-1.1.4.177-anyconnect.pkg&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;verify that indeed your asdm 5.2.3 the one you downloaded is in disk0 directory, if it is there do the following to verify asdm config statement in firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;B&gt;show run | inc asdm&lt;/B&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it will show the firewall current asdm config statement, if it is still loading 603 you must correct it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;example:&lt;/P&gt;&lt;P&gt;remove old statement, add new statement &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;asa#config t&lt;/P&gt;&lt;P&gt;asa(config)#no asdm image disk0:/asdm-603.bin&lt;/P&gt;&lt;P&gt;asa(config)#asdm image disk0:/new_asdm_image.bin&lt;/P&gt;&lt;P&gt;asa(config)#exit&lt;/P&gt;&lt;P&gt;asa#write mem&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I do not believe you need reboot after changing statement, after corrections try loading asdm, if it does no load then reboot asa, but again asdm should load without reload. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;as for ssh follow this link.( use &lt;B&gt;aaa authentication local&lt;/B&gt;  )&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a008069bf1b.shtml#configs" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a008069bf1b.shtml#configs&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let us know how it works out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rgds&lt;/P&gt;&lt;P&gt;Jorge&lt;/P&gt;&lt;P&gt;&lt;I&gt;Rate any helpful posts if it helps&lt;/I&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Mar 2008 15:51:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977521#M940756</guid>
      <dc:creator>JORGE RODRIGUEZ</dc:creator>
      <dc:date>2008-03-18T15:51:13Z</dc:date>
    </item>
    <item>
      <title>Re: ASA ASDM connection problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977522#M940760</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Jorge,&lt;/P&gt;&lt;P&gt;thanks for the post. A couple of questions so I understand Your response correctly:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I need to connect through Console at this point because I haven't done the SSH config, right? There is no "default" username to connect?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Not beeing familiar with the console connection: Is there some username or password other then used in ASDM?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks once again for Your help, I'll give You some feedback when I've tried Your suggestions on site.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Mar 2008 16:04:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977522#M940760</guid>
      <dc:creator>PeterBodzay</dc:creator>
      <dc:date>2008-03-18T16:04:50Z</dc:date>
    </item>
    <item>
      <title>Re: ASA ASDM connection problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977523#M940763</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;correct..  is this firewall new out of the box?  if so there should not be any username configurations in it..you should be able to connect to console without authentication..  &lt;/P&gt;&lt;P&gt;if new asa  just try connecting through console see what you get.. press enter several times, and type enable to get to enable mode.. terminal emulation settings are&lt;/P&gt;&lt;P&gt;COM1, 9600 bps, data 8, partity none, stop bits 1, flow hardware.. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[edit] some basic guide on asa basic configs.&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/docs/security/asa/asa71/getting_started/asa5500/quick/guide/asa_gsg.html" target="_blank"&gt;http://www.cisco.com/en/US/docs/security/asa/asa71/getting_started/asa5500/quick/guide/asa_gsg.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Mar 2008 16:14:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977523#M940763</guid>
      <dc:creator>JORGE RODRIGUEZ</dc:creator>
      <dc:date>2008-03-18T16:14:03Z</dc:date>
    </item>
    <item>
      <title>Re: ASA ASDM connection problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977524#M940764</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Well, there is a local user that I've made for test VPN connections. There is also a AAA config for VPN connections. However I haven't issued the commands for SSH (as described in the link You supplied)...&lt;/P&gt;&lt;P&gt;Think 'm stuck with console the next time I'll get on site... &lt;span class="lia-unicode-emoji" title=":face_with_tongue:"&gt;😛&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I'll get back to You then!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Mar 2008 16:20:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977524#M940764</guid>
      <dc:creator>PeterBodzay</dc:creator>
      <dc:date>2008-03-18T16:20:11Z</dc:date>
    </item>
    <item>
      <title>Re: ASA ASDM connection problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977525#M940766</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No problem, please do so.. I or netpro folks will be here..:-)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Mar 2008 16:23:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977525#M940766</guid>
      <dc:creator>JORGE RODRIGUEZ</dc:creator>
      <dc:date>2008-03-18T16:23:30Z</dc:date>
    </item>
    <item>
      <title>Re: ASA ASDM connection problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977526#M940768</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yeah!&lt;/P&gt;&lt;P&gt;Worked great, thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can't understand why SSH is enabled on inside interface in default config but not the local authentication of SSH sessions... Whats the point enabling something You cant use?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However, I've learned to:&lt;/P&gt;&lt;P&gt;aaa authentication ssh console LOCAL&lt;/P&gt;&lt;P&gt;before doing anything else on my ASA:s... &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Mar 2008 16:11:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977526#M940768</guid>
      <dc:creator>PeterBodzay</dc:creator>
      <dc:date>2008-03-19T16:11:35Z</dc:date>
    </item>
    <item>
      <title>Re: ASA ASDM connection problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977527#M940769</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Pete, thanks for the update.  Indeed, I do not believe ssh &lt;IP&gt; &lt;MASK&gt; &lt;INTERFACE&gt; would be preconfigured on a asa out of the box, at least it was not the case in our ASAs, perhaps things have changed with newer asa shippments..or perhaps the asa was previously used and its config  was not fully cleared..  in any case, the most inportant thing is you have it working and understand how to implement aaa authentication using asa local users from asa.  &lt;/INTERFACE&gt;&lt;/MASK&gt;&lt;/IP&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks fort the rating , I encourange you to participate in cisco forums, you'll be surprise how much you can learn here as well as share your networking experiences. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Bst Rgds&lt;/P&gt;&lt;P&gt;Jorge&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;     &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Mar 2008 17:25:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-asdm-connection-problems/m-p/977527#M940769</guid>
      <dc:creator>JORGE RODRIGUEZ</dc:creator>
      <dc:date>2008-03-19T17:25:55Z</dc:date>
    </item>
  </channel>
</rss>

