Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Adaptive Security Appliance, Secure Firewall Management Center, and Security Cloud Control.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

I have the following network as shown. I seem to have some problems configuring routes for the ASA 5510.I need hosts on 194.1.10.0/24 network (HEADQUATER) to be able to ping the hosts on 194.1.20.0/24 (BRANCH). But hosts on the headquater network can...

i. How often should I upgrade the ASDM and ASA software?I am confused by the versions on the downloads section of the CISCO website - do I pick the latest version without an ED for stability?ii. Is there a correct order? DO I updgrade the ASDM softwa...

mawallace by Level 1
  • 2306 Views
  • 2 replies
  • 0 Helpful votes

Greetings,We are running several ASA 5540 pairs in Active/Active transparent mode (software version 8.2(1).)  We are trying to find an explanation for some curious syslog traffic generated by these pairs.No nat-control is enabled.  Security levels ar...

We are using Cisco IDSM-2 for a e-Commerce client. The Auditor from the client wants to know that how the IDSM get access to the decrypted SSL traffic? To do so, do we have to import the servers' certificate and private key into the IDSM?Are there an...

joiner by Level 1
  • 672 Views
  • 1 replies
  • 0 Helpful votes

We have a company website and when an image is changed the old image is still seen on the website internally. The image name is the same so I am suspecting it is cached on the ASA. Is there a way to clear this without reloading? Thanks.

Hi,My question concerns the way to send SNMP traps as an alert format.I am totally aware that the AIP-SSM/IPS 4200 does not support syslog as an alert format.The default method is through SDEE but I really don't want to use MARS to get my security ev...

By default traffic from higher security-level interface is allowed to go to lower security-level interface, I assumed that this would allow a host on the inside network to access a host in the dmz straight out of the box. It dosen't work.I need the i...

I've reviewed the zero downtime upgrade documentation and it says that it is supported in several scenarios.  The one most closely related to my upgrade is this scenario:You can upgrade from a minor release to the next minor release. You cannot skip ...

jgagznos by Level 1
  • 3143 Views
  • 2 replies
  • 0 Helpful votes

Hi all. We have an ASA with the csc module. It works fine but we find that we have a lot of latency when we try to download large files. Mainly downloading images from Cisco. I know there are a lot of tweaks ie deferred scanning etc but I dont want t...

mbluemel by Level 1
  • 649 Views
  • 1 replies
  • 0 Helpful votes

folksi have an asa 5540 & i'm trying to allow an outside IP through the asa & into another firewall's dmz on the inside interfacethe external IP is 145.a.b.c/32 & the internal dmz address is 194.a.b.ci have a nat exempt rule allowing 145.a.b.c/32 to ...