Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Adaptive Security Appliance, Secure Firewall Management Center, and Security Cloud Control.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Hi,I am getting alert on high discard rates on FW interfaces via a monitoring tool.  Just want to validate if the packets dropped by ACL's are also contributing to the high discard rate counter?  If this is the case what would be an acceptable thresh...

e.craig by Level 1
  • 3650 Views
  • 5 replies
  • 0 Helpful votes

Hi ,We are using Cisco ASA 5550 with verison 8.0.5.We having below setup in our network Site 1                     Site 2                |                                |Fw -------> Metro ------> Int Fw ----Internet Setup - - Each site havin Cisco A...

hello to all members:-    i am trying to convert my old ASA ios config to new. could you guys review and let me know the convertion is look correct???oldaccess-list MGMTSOFTWARE_access_in extended permit tcp 192.168.3.0 255.255.255.0 host 10.0.9.5 eq...

Resolved! DMZ static nat!

Hi Experts,I believe this everyone is doing OK and getting along with your are doing? I have this funny scenario that happened on ASA 8.4 I configured recently for DMZ static nat. See the topology attached. I did configure the inside with a PAT objec...

Hi All,I'd like to see if an ASA is blocking / dropping traffic whenI try to connect to a server. I'm basically getting timeout errors every so often, and want to see if it's the ASA which is in the path of the traffic.What's the best Debug command t...

GRANT3779 by Spotlight
  • 660 Views
  • 5 replies
  • 0 Helpful votes

Hi,I would like to config "when host X on vlanX goes to a network that is across an ipsec tunnel, for which vlanX network is not in the encryption domains, translate host X address to that of the asa in a network that is part of the crypto domain".In...

3moloz123 by Level 1
  • 545 Views
  • 2 replies
  • 0 Helpful votes

Hi,I just managed to completely screw all our tunnels when trying to configure l2l to allow a remote peer with dynamic address to form a tunnel with me.I'm pretty confident that my dyn map kicked in on every tunnel, and then the phase 2 would fail be...

3moloz123 by Level 1
  • 598 Views
  • 5 replies
  • 0 Helpful votes

HI everybody.I have few questions.policy-map type inspect PING class type inspect PING  inspect class class-default  pass1)What is the order of operation?  The" inspect"  action will apply only to class " PING" . The action " pass" will be applied to...

sarahr202 by Level 5
  • 460 Views
  • 3 replies
  • 0 Helpful votes
Review Cisco Networking for a $25 gift card