Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Free

 
Labels

Forum Posts

Hello,Does anyone knows how long are the IP-to-user mappings kept on the Cisco Context Directory Agent?Is there a setting that dictates for how long to keep these mappings if a user doesn't logoff? The scenario i have seen is that user lock their PCs...

lm20ele by Level 1
  • 1416 Views
  • 5 replies
  • 0 Helpful votes

Hi All, Please correct me If I am wrong. I am upgrading from 8.0 to 8.4. One of my customer has nat rules in 8.0 as belowFor all the access lists for below they used permit ip any anynat (inside) 0 access-list xxxxxnat (outside) 0 access-list xxxx ou...

i'd like to change the outside address that my 5540 listens on for our ipsec vpn clients, where exactly do i change this?  perhaps in nat rules (tcp 1000?) we have a /29 and i'd like to replace our pix that is serving as our vpn and would love to reu...

Hi All,Recently observed constant high cpu in asa firewall with version 8.2.5 - 80% utilization. The process consuming more cpu is - tmatch compile thread around 60%. Do you recommend downgrade to 8.2.3 or is it an opened bug in the current version 8...

secureIT by Level 4
  • 1747 Views
  • 5 replies
  • 0 Helpful votes

I have an ASA 5512 running asa915-smp-k8.bin I enter the following commands and get this error.FW-5512-ASA(config)# object network TCP_OWA_443FW-5512-ASA(config-network-object)# nat (inside,outside) static interface service tcp https httpsERROR: NAT ...

burleyman by Level 8
  • 2206 Views
  • 2 replies
  • 0 Helpful votes

I want to PAT traffic from the remote sites after it arrives at the ASA from the site 2 site VPN and as it goes out the "inside" interface. See attached diagram.I want traffic from 192.168.90.0/24 to be PAT to 192.168.36.90 as it goes out the "inside...

burleyman by Level 8
  • 5394 Views
  • 14 replies
  • 0 Helpful votes

I have 2 ASA'sOne in  production with a DMZ connection to a second one that I am using.(called lab)From within the LAB ASA I can ping to systems on the lab site and to the  internal interface on the production ASA.When I am on a Windows server in the...

yes

Hi,Following ports required to access ESXI host via vSphere client from outside WAN.902 Incoming and outgoing TCP, outgoing UDP443, 903 Incoming TCPI have added IP NAT below on our Cisco 1800. Able to login to vSphere. however, unable to access virtu...

phariraja by Level 1
  • 941 Views
  • 10 replies
  • 0 Helpful votes