evIdsAlert: eventId=1287530989864443762 severity=high vendor=Cisco alarmTraits=2147483648 originator: hostId: appName: sensorApp appInstanceId: 665 signature: description=AD - External UDP Scanner id=13004 created=20061120 type=anomal...
evIdsAlert: eventId=1287530989864443762 severity=high vendor=Cisco alarmTraits=2147483648 originator: hostId: appName: sensorApp appInstanceId: 665 signature: description=AD - External UDP Scanner id=13004 created=20061120 type=anomal...
Hi Guys,Is it possible to define a single user in a two separate VPN Group? If yes, if the user is connecting, which group will take into effect? PS: Acc to my knowledge, u can add many users to one group, the users will have access and permis...
We've implemented an SSP-40 and were wondering if there were event messages for Global Correlation or Anomaly detection drops. We seem to only have signature event messages.Dennis
Hello,On my ASA I normally add a destination rule as "any" with the destination port as tcp/80 and tcp/443 so all 'inside' users can access Internet pages. How can I just allow them to the public IP ranges of the internet as the "any" allows them to...
Hi;I'm trying to configure an ASA firewall (FW2) for syslog and tacacs and am experiencing strange behavior. Both the syslog and ACS server are on the inside of another firewall (CoreFW). Whenever a log message is generated on FW2 the request is dr...
Hi I have a Cisco ASA 5505 firewall which is running version 72.4. I want to upgrade this to 83.4. The ASA have 512MB of memory already installed. Can this be done directly from 72.4?RegardsJay
Please let me know the lifecycle status of CISCO PN ASA5510-BUN-K9.Regards,Sudhakar
I have two monitoring servers trying to use a single IP address to SNMP my ASA. The IP they are using is on the "INSIDE" interface and one of the servers is coming in from the "OUTSIDE" interface. Each server can SNMP the interface the packet enters,...
ASA has 3 interfaces: outside, inside, DMZAverage total throughput is between 20-200mbps. Majority of throughput would be between inside and DMZ interfaces. CPU never goes above 70% (and doesn't seem to spike much with respect to traffic patterns).We...
Hi,i have a site to site vpn.It,s phase 1 policy is currently 3des and sha(policy no 20)now i want to change the phase 1 policy of this site to site vpn .I have multiple phase 1 policy .i want to change to policy 10 (AES sha).How can i do it USING C...
Hi If two interfaces are paired into one group and one interface of pair goes down, will the second interface will be declared as down by IPS?
I am unable to remove an access list. Currently this this access list contains 4 lines of remarks. I was unsure if I was entering the command correctly and now I have 4 lines of "trash" that needs to be removed. Symptoms: The "sh run" command sho...
I am working on tying several subnets together via VPN. I recently began using object-groups in our 8.2 config, but before actually applying the config, we updated to 8.4. I'll try not to complicate it further.I have object-groups successfully applie...
Hi,Help me to understand!!!We have an internet link from ISP whic is terminated in a router(say Fa 0/0). ISP have provided me a public ip pool for our use. we have configured one of the ip from this pool in other interface of the router(say Fa 0/1) a...
Dear Experts,I need to add some of the customized signatures in Cisco IPS-4260, Can any1 help me in this?Signature #1: This signature matches against one or more of the following strings: "sqlmap\x2f""Absinthe\x2f""SQL Power Injector"Signature #2: Th...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
| Subject | Author | Posted |
|---|---|---|
| 06-17-2026 11:33 PM | ||
| 05-26-2026 07:54 AM | ||
| 05-02-2026 06:09 AM | ||
| 04-30-2026 12:46 AM | ||
| 04-24-2026 07:04 AM |