Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

I am trying to connect my asa to my network. I am new to firewalls. I started with setting the management0/0 interface on an ip address of 192.168.1.2/24 and connected it to my router with 192.168.1.1/24. Both interfaces are on the same subnet. I tri...

Resolved! Physical Firepower

Hello! There is serious lack of information regarding firepower appliances. For example you can find many things about ASA with SFR, but nothing about physical Firepower appliances. Thats why i have two questions:Can we replace our proxy with Physica...

Accidentally, I have to implement a DMZ configuration on an outdated and unmaintained ASA 5510 firewall (ASA version 8.0(3)6, ASDM version 6.0). After diving into the manual and some forum posts, I've learned that there was a major CLI syntax change ...

ASA.M.Oss by Level 1
  • 405 Views
  • 2 replies
  • 0 Helpful votes

We currently have an ASA 5585-X with an SSP-40 as well as an IPS SSP-40.   There is currently no IPS functionality in use, the IPS SSP-40 was bought for a future project. Another administrator is under the impression that we can not use the 10G inter...

Hi We have a new WLC with ISE. We can see the laptop connecting to the WLC & ISE as well as on the firewall.  On the laptop (in cmd) I can see via ns lookup 8.8.8.8. However when I open a webpage on the laptop i get a 'unable to connect'. In the ...

1. With Modular Policy Framework, what is the meaning of the drop count?  See below output of a SFR policy. 2. Does it represent packets that were dropped by the ASA prior to being punted to SFR? 3. If the ASA is dropping those packet, what would be ...

cpaquet by Level 1
  • 875 Views
  • 1 replies
  • 0 Helpful votes

Hi, If I have two web servers (say 10.1.1.1:80 & 10.1.1.2:81) in a DMZ, is it sufficient enough to add a static NAT or PAT only and the servers will be reachable from outside on those ports?Or do you need an outgoing dynamic nat in order for those se...

louis0001 by Level 3
  • 361 Views
  • 1 replies
  • 0 Helpful votes

I have an ASA 5545-X with SourceFire and the module is reaching over 90% of CPU usage (not all the time only during working hours). However I can see that only 1 CPU (there are 6) is reaching that limit. I have two questions: does the SourceFire modu...

I've seen a lot of people complain about this, but I haven't found any suggestions that work. Our Internet connection is 100 Mbps, but the ASA limits it to 30 Mbps. I've completely blown away the configuration and only put on the inside and outside I...

baskervi by Level 1
  • 555 Views
  • 4 replies
  • 0 Helpful votes

Hi, I have an OUTSIDE interface (goes to another private network 10.1.1.254/24) On the INSIDE interface (192.168.200.0/24) we have various servers. These are statically natted to a different ip eg 10.1.1.1 > 192.168.200.1, 10.1.1.2 > 192.168.200.10 e...

louis0001 by Level 3
  • 304 Views
  • 3 replies
  • 0 Helpful votes