cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
389
Views
0
Helpful
4
Replies

ASA5545 x BOTNET license question

Steve Coady
Level 1
Level 1

We have an ASA BOTNET license. Should this be enabled "Globally"?

sMc
1 Accepted Solution

Accepted Solutions

Murali
Level 1
Level 1

Hi ,

you have the license key and wanted to activate or want to configure botnet features?

You can apply the license by normal activation-key command and if you want to configure below is the guide.

http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/configuration/guide/config/conns_botnet.html#wp1129967

HTH

Murali

View solution in original post

4 Replies 4

Murali
Level 1
Level 1

Hi ,

you have the license key and wanted to activate or want to configure botnet features?

You can apply the license by normal activation-key command and if you want to configure below is the guide.

http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/configuration/guide/config/conns_botnet.html#wp1129967

HTH

Murali

Murali

 

Thank you for the response.

 

I have activated the license. I was on the GUI/Botnet filter?Botnet setting and Traffic Settings (interface options).

 

None of the options are selected so how is the Botnet function going to detect anything?

sMc

Okay i got it, it'll give you an option to enable it on individual interfaces or global(all interfaces). Generally its applied on the outside interfaces.

But before doing that you need to configure few things as mentioned in the document. Below is short summary.

 

1.Enable DNS
Configuration-->Devic management -->DNS-->DNS Client
2.Enable DNS Snooping
Configuration-->Firewall-->Botnet Traffic Filter-->DNS Snooping
3.Enable client & use dynamic database
Configuration-->Firewall-->Botnet Traffic Filter-->Botnet Database
4.Create static Black/white lists(optoinal )
Configuration-->Firewall-->Botnet Traffic Filter-->Black and White Lists
5.Specify action
Configuration-->Firewall-->Botnet Traffic Filter-->Traffic settings

 

HTH

Murali

(please mark this as answer if it resolved/answered your problem/question)

Murali

 

What exactly does the Botnet license do?

Will it deny traffic?

sMc
Review Cisco Networking for a $25 gift card