Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Hello,   My customer is running ASA on an FP4140 Appliance and is using ISE for posture assessment. Is there anywhere that has comments on ISE DACL scalability for AnyConnect VPN users? Is this like a switch where there is a limited amount of resourc...

ruhearn by Cisco Employee
  • 1157 Views
  • 1 replies
  • 0 Helpful votes

Hi All   We have a customer with a HA pair ASA5525 running ver 9.6(4)6 which when we login into the ASDM the cluster remains stable for about 10 to 15 minutes, then the Standby device will drop out of the cluster. The standby can be added back in and...

support by Level 1
  • 727 Views
  • 1 replies
  • 0 Helpful votes

Hi,   Any idea why traffic destined to port 443 might be bypassing an ACL for that port and hitting an IP any/any ACL that's at the bottom of the list, at least according to syslog.   The ACLs:   access-list inside_access_in line 5 extended permit tc...

Hi everybody, I was watching yesterday the presentation of BRKSEC-3300 from Cisco Live 2018 - Orlando, and I liked what I've heard about Automatic Application Bypass (AAB). So, I've read the section "Configuring Automatic Application Bypass" (Link) f...

We recently replaced our firewall pair (active/failover) due to a clock issue. During this process one firewall (failover) had already died, so we decided to configure 1 of the new replacements as a failover and had the active (due to fail eventually...

Configuring site-to-site IPSEC VPN. In ASA, you're able to have multiple IKE policies but I don't see that option in FTD. It appears that you can only select one at a time.   I see the following text from the FTD 6.2 Configuration Guide: "IKE policie...

CNM88 by Level 1
  • 4027 Views
  • 4 replies
  • 0 Helpful votes

I'm trying to set up a virtual NGFW/FTD in our lab environment.  I wanted it to be a stand alone system and not have to set up a separate manager.  However, when I try to enable the local manager, I receive the following error: "This device does not...

Review Cisco Networking for a $25 gift card