Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Adaptive Security Appliance, Secure Firewall Management Center, and Security Cloud Control.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

How can i create customized user in Cisco ASA 5505 having the following Privileges? note i dont have AAA server.User can only perfrom show runing, ping, traceroute, show xlate.Second Question is, I have review one of the firewall configuration and fo...

asadrizvi1 by Community Member
  • 914 Views
  • 2 replies
  • 0 Helpful votes

The following does not help:ASA# sho run object-g | in 1433port-object eq 1433service-object tcp eq 1433 port-object eq 1433ASA# sho run object-g service | in 1433              port-object eq 1433service-object tcp eq 1433 ASA# sho run object-g | be ...

I have this setup:outside <-> [ASA] <-> inside (10.21.30.0/23) <-> [router] <-> inside2 (10.21.40.0/23)I added this:static (inside,outside) tcp 1.2.3.180 www 10.21.41.100 www netmask 255.255.255.255access-list main_acl extended permit ip any host 10....

Hi,I want to check whether packets are being dropped on a FWSM interface.  How to do this?  I was reading some Cisco documentation and the 'packets dropped' shown under the interface is not what I thought it meantInterface Vlan100 "backbone", is up, ...

cosimotodaro by Community Member
  • 2068 Views
  • 3 replies
  • 0 Helpful votes

The problem: When I try to run ASDM on my Cisco 5550, I'm getting the dialog box "Unable to launch application". When I click on "Details", I see the error: "The application has requested a version of the JRE (1.5+) that is not installed". The system...

wgseligman by Community Member
  • 3541 Views
  • 1 replies
  • 0 Helpful votes

Hello,My NAT below is at #135, I'd like to move it up to #100 or which command would you move it up?myasa# sh nat | inc 192.168.1.15135 (inside) to (outside) source static obj-192.168.1.15 obj-78.123.123.15myasa#Thanks.

We have an ASA5505 UL bundel, updated with this license "L-ASA5505-SEC-PL=" to enable traffic from DMZ to Inside. No NAT or rules deployed for that yet.On the Inside we have Exchange 2007 in a single server installation. The public url for smtp, Acti...

Peters by Community Member
  • 7898 Views
  • 15 replies
  • 0 Helpful votes

Hi.A customer im working with has an internal server running on SSL port 443. Standard.They want connections to the public facing interface on a non standard port, port address translating through to 443.Its running 8.2(1)so will this work? the serve...

GarySLear by Frequent Visitor
  • 1158 Views
  • 1 replies
  • 0 Helpful votes

Resolved! ASA behavior

Hello people,so i am setting a lab up and i am trying to go a little deeper on ASA default behavior. As far as i know by default ASA has a default access list permitting Any IP traffic from higher to lower security level interface. Default global ins...

Resolved! PAT port range

Hi,I'm looking for a way to avoid doing 999 individual port address translations for ports in a range 1-999 for the same protocol. I'm not finding anything that asa code v9.11 will allow. I have the service objects defined but cannot find a way to ge...

lcaruso by Level 10
  • 2035 Views
  • 4 replies
  • 0 Helpful votes