We have Cisco ASA firewall with network client VPN using AAA(safeword) but I'm not sure when user connect to VPN is using AnyConnect or IPsec. How do I find out?
We have Cisco ASA firewall with network client VPN using AAA(safeword) but I'm not sure when user connect to VPN is using AnyConnect or IPsec. How do I find out?
Hello, I'm fairly new to Firepower devices, and I've hit a barrier. I need to specify remote access vpn access rules per AD Group, so that I can limit the routes presented to each group of users. I cannot find anywhere where to do this, is it pos...
ASA 5506-X, Under default settings, how to set outside GatewayTHE GOAL:Trying to get this to work in the most basic possible setup. Reset to defaults, then set fixed PUBLIC OUTSIDE IP address on "outside" Interface to ...50 (not showing the first thr...
Good day, I would like to ask how to verify if the sip inspection is enabled? And how to disable it ? Thank you
Dear all. I'm configuring PPPOE on ASA 5510. I'm doing base on this article "https://www.cisco.com/c/en/us/td/docs/security/asa/asa72/configuration/guide/conf_gd/pppoe.html". But I can't establish PPPOE on ASA 5510. When i debug on firewall, I recive...
Hello Experts, We have ASAs running in Active/standby mode, I would like to know if we need to add both Asas to the CSM or just to the active one ? If we just need to add active FW then how are we going to do interface configuration, let say I want t...
Hi All, Currently I have a 6509 switch which connects to an HA-Pair of 5520's. The 5520's connect to both ISP 1 (12.x.x.x) & ISP 2 (50.x.x.x). I have an inside server farm on 192.168.0.0/24, and many of these servers need to be accessed from the out...
Hello, I have to migrate an ASA 5512-X HA-Pair (Active-Passive) to an 5516-X HA-Pair (active-passive). I wonder if I just could copy and paste parts of the actual 5512-X configuration (network-objects, access-lists, nat, group-policies, ..) to the 55...
Hi everyone, I just got this new device. I am new to this Firepower5508 and have to complete the basic settings in a short period of time... I would like to ask: 1.) In the router mode, how do I change the security level for interfaces (like th...
I am prep'ing two HA pairs of ASAs for FirePOWER. I have (hot) installed the SSDs (two in 5555X and one in 5525X) and did not see the SSDs in SHOW INVENTORY. Upon reading the instructions in the ASA hardware guide, it says that you must reload the AS...
Hi, We are having a strange bahviour with a FTP connection. We have a session where the client is sending TCP FIN to the server but this TCP is being dropped by IPS FIREPOWER. Doing a capture in IPS we see the TCP FIN which is send from client to s...
Hello, I've run a Pen test against our ASAx and it shows weak TLS, how do I fix this and what side effects might we get. We also use the Cisco Anyconnect for our remote users as I guess they use this? https://www.ssllabs.com/ssltest Screenshot ...
Hi at all, we have a cisco ASA 5505 (ASA Version: 9.0(1)) and need make a Site to Site Connection with following parameters: IKEv2, Phase1Encryption: AES-256Integrity Hash: SHA512 (SHA Version 2) Does this type of ASA support SHA2 512 ? Thanks....
Hello: I am new to Cisco, pardon my little knowledge. I've acquired an ASA 5506-X with FIREPOWER and I've asked a friend to help configure it. We're not able to enter "enable-mode" when we connect to the console. We are using the USB port on the de...
Hi I have to create connectivity for an external phone system say port 50000-51000 UDP from outside to a single host inside. I would like to map the whole UDP port range range from outside (hitting the external interface) to inside (pabx host 192....
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
| Subject | Author | Posted |
|---|---|---|
| 05-26-2026 07:54 AM | ||
| 05-02-2026 06:09 AM | ||
| 04-30-2026 12:46 AM | ||
| 04-24-2026 07:04 AM | ||
| 04-22-2026 11:56 AM |