Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

I am trying to determine whether or not it makes sense to add a distribution set of switches as part of a ASA firewall design effort or to just bring the ASA's directly into the existing collapsed core/dist pair.Basically, we have a site that has a c...

c.fuller by Level 1
  • 751 Views
  • 1 replies
  • 0 Helpful votes

Hi Guys how do i enable port forwarding on the CLI for ASA 5510. outside subnet is 192.168.1.0/27. when i try to ping another IP with that range i can't access.

chigumbab by Level 1
  • 4875 Views
  • 37 replies
  • 0 Helpful votes

I want to know, why few connections in the pix/asa doesn't contains any flag value, they just contain "-" & rest is blank.UDP outside x.x.x.x:11167 inside x.x.x.x:44417, idle 0:01:43, bytes 161, flags -UDP outside x.x.x.x:28141 inside x.x.x.x:44417, ...

durgeshk by Level 1
  • 545 Views
  • 1 replies
  • 0 Helpful votes

Hi guys,Please see the attached diagram.I am having a server LAN in 10.216.153.0/24 and from here server have to reach other server LAN beside ASA 10.123.252.0/24in between is 6500 sw with FWSM module. And i have created a context for this in transpa...

Resolved! ASA5510 and RDP

Hello all,Recently implemented an ASA5510 and as a total noob on this device I cannot setup RDP access. I've browsed these and other forums and tried all the suggestions that I've been able to find and still no luck. Any help from those of you with m...

todd by Level 1
  • 4713 Views
  • 13 replies
  • 0 Helpful votes

Resolved! VPN Natting

I'm having issues with getting traffic from my VPN client (IP 10.71.2.2) to my inside local network client (IP 10.71.1.11).  I have my config attached.  Is there something I'm missing?

Arvo Bowen by Level 1
  • 3441 Views
  • 17 replies
  • 0 Helpful votes

Hi,I am facing some issues on static NATafter my IOS upgrade from 7.2(3)I am getting some peculiar error%ASA-6-302013: Built inbound TCP connection 654734 for dmz:172.19.19.141/27685 (172.19.19.141/27685) to inside:192.168.16.250/3389 (172.19.22.91/3...

helloas following topology showing, we have multiple public addresses from different ISP. now we need map those public ( inside global ) addresses to single private ( inside local ) address, which assigned to a server, so that user from internet can ...

hi out thereWe have been digging a bit in "bad" http throughput at some sites through our ASA 5510/5520'eres - the boxes itself are not that loaded so that we would expect bad througput but some sites load very slow thorugh these boxes and through th...

tiwang by Level 3
  • 10981 Views
  • 3 replies
  • 0 Helpful votes

I understand the ASA has limited functionality with website blocking, and that you have to create regular expressions.  If you do this is it possible to create groups for the regular expressions? for example certain MAC addresses can get to all websi...

Unfortunately I cannot share much of the configuration details other than that I have a ASA 5510 with 256MB RAM running 7.2(3) code.  I was troubleshooting a sharp spike in memory utilization (from 41% used to 91% used in the span of 2 hours) when I ...

All,     I have been playing with IOS IPS. I set up an event action override to block when a certain risk rating was triggered. It worked correctly as expected. Then when I changed the risk rating, in the event action override, where it shouldn't hav...