Hi, Anyone can give some suggestion? Tks/Leon Lai
Hi, Anyone can give some suggestion? Tks/Leon Lai
HiI am trying to setup an IPSec VPN from ASAv in Azzure to on-premises firewall(ASA5515).I am pasting the relevant configuration from ASAv here object network OBJ-AZURE-LONDON-247 subnet 10.247.2.0 255.255.254.0object network OBJ-LON-ONPREM subnet 10...
I am performing a POC config for a project I am working on. I have configured a ZBF and it works as intended with one exception, traffic in from the Internet is not inheritly blocked, I think, to the self zone. In the below config I am allowing ICMP ...
Hi We have purchased "FS-VMW-10-SW-K9" for our Firepower Management Center virtual appliance.Two questionsThis means we are able to manage up to 10 Firepower Devices/Sensors?If we need to add device/sensor 11 and 12 would we need to purchase a separa...
Hellow happy people, Did any one enabled automatic backup of ASA configuration using EEM. I am going to try it out. What will be the challenge which i can forsee before i go ahead? Something like high cpu/mem utilization etc.. event manager applet ...
Hello guys, I would like to know what is the minimum latency required to deploy FMC in HA. In documentations I can't found these informations. Best Regards,
What is the best way to create an ACL to be used on an internet facing edge port to keep the logs down when packets are denied from devices not permitted according to the ACL? Is there anyway to hide the public IP from the internet?
I have a FMC1500 that manages 6 firepower sensors in my ASA firewalls. I recently upgraded the FMC to 6.0 and patched it. Now I am trying to upgrade the sensors to 6.0+. On an ASA running IOS 9.6.3, I tried to install the 6.0.0__Pre-install-5.4.1.999...
I have a pair of ASA 5585s that I've configured in a cluster.FWL1# sho cluster infoCluster HQASA: On Interface mode: spanned This is "FWL1" in state MASTER ID : 0 Version : 9.0(2) Serial No.: <removed> CCL I...
Our company is a SaaS provider. Our security team requests that the OUTSIDE_Inbound ACL be expanded to include ACEs which reject entire countries via lists of subnets. The ACEs number in the thousands. The network team's concern is 'flatlining' t...
Hi everyone,I found some designs in our network which I haven't seen in any configuration guides. I hope that someone can have a look at our network and point out some design errors or missconfigurations. Attached you'll find a picture with the topol...
Hi all, I'm now to the FMC API, and FTD in general. I have been tasked with creating an automated process to disable a subinterface on an FTD. I am able to pull the subinterfaces, but do not appear to be able to change the state via the API. I hav...
Our company has two IPS planning an IPS to USER using the Internet access, and the other would like to establish a branch to the branch office for the use of the company's internal services, whether both site are Cisco ASA equipment can achieve this ...
Hi All, I have setup an access policy to block access to porn and gambling yet the number 1 hit on google can be opened . am I doing something wrong here?
I have a FW (2) that have to segments one for data and one for voice (see attched image) and I want that those segments reach the servers segment behind another FW (1) also between the two Firewalls there is L3 switch.(image attached) Could you pleas...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
Subject | Author | Posted |
---|---|---|
08-29-2025 08:17 AM | ||
07-16-2025 04:21 AM | ||
07-06-2025 01:40 PM | ||
07-04-2025 01:59 AM | ||
06-19-2025 07:32 AM |
User | Count |
---|---|
8 | |
7 | |
3 | |
1 | |
1 |