Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Adaptive Security Appliance, Secure Firewall Management Center, and Security Cloud Control.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Hi, I want to get a copy of the firesight connection events to a remote logging server. would anybody help with that.? i need a global configuration, as i have too many access policies and it will take to much time to add log server to this number of...

Hello, is there a mechanism in the new Firepower that can block IP address originating from different countries? I have a site that gets bombarded by DOS and Dictionary attacks. I have called the ISP in the past but, that can be difficult in getting ...

dan hale by Level 3
  • 1348 Views
  • 1 replies
  • 0 Helpful votes

inter gi0/0 maneif inside ip add 1.1.1.1 255.255.255.0 security-level 100 no shu inter gi0/1 nameif mgmt ip add 2.2.2.1 255.255.255.0 security-level 100 no shu exit same-security-traffic permit inter-interface same-security-traffic permit intra-inter...

_Ratha_ by Level 1
  • 486 Views
  • 1 replies
  • 0 Helpful votes

Hi All, I have a private IP from one of our partner x.x.x.x and would like to nat it. Only our internal users will be initiating connection towards this IP.  What should the NAT statement look like on ASA 8.5 if have to NAT the outside ip to Y.Y.Y.Y...

I have a DMZ that has a Cisco Nexus switch with VRFs as well as a physical firewall.  Is it common in a DMZ environment to put the gateways for the DMZ systems on a Nexus VRF? Or should they be on the physical firewall?  If they are on the VRF, then ...

Hi, I tried to configured two object nat as below: Source Y (Internet) to destination Z (DMZ) translate port 443 into 9443 - I need this for a specific solution that only answers requests from Internet on  this port Source Y (Internet) destination...

Searching around I see a number of posts on the same subject, but these relate to v5.X software. 

 Relevant bits of config:
 
class sfr
  sfr fail-openuser-statistics accounting!
 class-map sfr
 match access-list SFR-REDIRECT
 ! 
access-list SFR-RED...

darreng by Level 1
  • 9798 Views
  • 4 replies
  • 0 Helpful votes

Hi to everybody, I have a question about the High Availability for the managed devices. Our customer has bought two sensors and two FMC.  So, I'd like to put in HA the two sensors... Them are in passive mode. How can I do it?  Thanks in advance  Re...