07-18-2020 01:06 PM - edited 07-18-2020 01:06 PM
Hello, not sure if this would be hardware or software.
I am getting what appears to be a timed reboot sequence. I have verified the power supply is not the issue as I have swapped it with another.
from my ISP perspective my authentication drops what seems to be every 1 day 23 hours then up for 2 mins then down 28 mins then up 16 mins then down 3 mins then up 1 day 24 hours.
I can easily focus on the ASA 5508 as it itself shuts down and reboots on its own which causes the drop of authentication as I have my DSL router in bridge mode and it authenticates.
the only thing I have changed on this ASA in the past month which this has only begun is the Cisco Logging. Is there a bug or glitch that would cause this what seems to be perfect reboot sequence?
any suggestions? BTW this power system is a nice battery backup system that has the ASA and 2 Linux servers running on and neither server reboots, just the ASA.
here is a pic from ISP side of the drops.
Solved! Go to Solution.
07-18-2020 07:11 PM
Please read Cisco Adaptive Security Appliance Web Services Denial of Service Vulnerability and scroll down to the "Exploitation and Public Announcements" section where it specifically states:
In September 2019, the Cisco Product Security Incident Response Team (PSIRT) became aware of additional attempted exploitation of this vulnerability in the wild. Cisco continues to strongly recommend that customers upgrade to a fixed Cisco ASA Software release to remediate this vulnerability.
07-18-2020 07:11 PM
Please read Cisco Adaptive Security Appliance Web Services Denial of Service Vulnerability and scroll down to the "Exploitation and Public Announcements" section where it specifically states:
In September 2019, the Cisco Product Security Incident Response Team (PSIRT) became aware of additional attempted exploitation of this vulnerability in the wild. Cisco continues to strongly recommend that customers upgrade to a fixed Cisco ASA Software release to remediate this vulnerability.
07-24-2020 07:58 PM
Another new one: Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Read-Only Path Traversal Vulnerability
Same as the other, currently vulnerability is being exploited in the wild.
07-21-2020 06:43 PM
And here is another: Cisco Adaptive Security Appliance Remote Code Execution and Denial of Service Vulnerability
Same as above, this vulnerability is actively being exploited in the wild.
07-27-2020 02:39 PM
Hello
I thank you again for your assistance and I apologize for the delay.
I had the initial problem patched and after a week it was stable so that has been fixed. As far as the 2 more recent links you sent me I contacted Cisco again and he mentioned my initial patch fixed the first of the 2 links you sent me as well but he sent me another patch to fix the 2nd of the 2 vulnerabilities. So I am very happy with Cisco’s response and help and even more so with your guidance . Thank you.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide