I was wondering if it's possible to do Geo IP Filtering through my ASA 5520?
I was wondering if it's possible to do Geo IP Filtering through my ASA 5520?
I was wondering if it's possible to do Geo IP Filtering through my ASA 5520?
An ASA5515-X is sucessfully connected to a 2960X via an LACP port-channel. Someone has changed the config on the 2960X end of the port-channel so we've no idea which VLANs are being trunked or the IP addresses of the management SVI on said switch. Th...
Guys, I have Cisco Firewall & Firmware 9.0.1 i have installed CX module in it. Also done with partition & management ip has been assigned But still i m unable to access it through browser. Also i have rebooted firewall but didnt work. Any suggestio...
When I inCSM, click on "Policy Object Manager" and then choose in the list of any "Host" (or any other object), click on it, right click and choose "Find Usage", to see a list of ASA and rules where the object is used, I have when listing ASA and cli...
Hi All, Could anyone can resolve my confusing? I am considering the dynamic PAT, if the PAT addresses isn`t in a same subnets as outside interface address in ASA , I must advertise a static route which toward to ASA on upstream router, right? In g...
How to identify which process is causing high memory utilisation in sourcefire sensor 3D8250 version 5.3.0.2. It is consistanly showing 97% utilisation
Hello We have 2 ASAs( 5512) configured in active standby mode. Ios version is 9.0.3 for bothe the ASAs. We are trying to upgrade the IOS to 9.1.6 . First we upgraded the IOS to the version 9.1.3 at this point failover works properly. When we try to u...
Since SFR is managed thru Firesight, is there any need for SFR to connect to any other systems other than Firesight? Is it required for it to communicate to DNS, NTP (mandatory)?
I have just received the new firesight appliance running on version 5.3.1-152 and need to upgrade it to 5.4.0-763. I have downloaded the iso file Sourcefire_Defense_Center_S3-5.4.0-763-Restore.ISO from Cisco site Is it going to wipe out all the confi...
I am doing a hardware upgrade of a ASA. I want to export the existing device identity certificate to the new device. After I have completed the export. Does the old device retain the certificate in case I need to regress the upgrade for whatever reas...
Can the IPS SSP default deny all outbound traffic? I have a client that would like to deny all outbound traffic and create a whitelist of allowed destinations. I realize this could be accomplished in the firewall policy, just curious of the IPS modul...
Hi, As in the picture attached ASA dmz also replying the ARP request. And the host 1 update arp cache with the ASA interface mac address . This stops the communication between HOST 1 and HOST 2 . How can i solve this issue ? other related c...
Hi Everyone, Here is setup Sw1---192.168.50.226-----------Firewall---------------192.168.50.230--Sw2 From Switch 1 i am trying to ping the interface IP of switch 2 which is directly connected to firewall but itdoes not work. Firewall has no NAT co...
Hi, I'm trying to figure out why does my ASA have a ICMP timeout of 1 hour instead of default 2 seconds as stated in the documentation and cli. fw-asa(config)# timeout icmp ? configure mode commands/options:<0:0:2> - <1193:0:0> Idle timeout for icm...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
Subject | Author | Posted |
---|---|---|
08-07-2024 02:43 PM | ||
08-06-2024 09:01 AM | ||
08-05-2024 11:02 PM | ||
07-25-2024 02:08 PM | ||
07-21-2024 08:44 AM |
User | Count |
---|---|
10 | |
8 | |
7 | |
5 | |
5 |