Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Adaptive Security Appliance, Secure Firewall Management Center, and Security Cloud Control.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Hi all.I have two ASA 5510 in Active/Standby each with ASA-SSM-10. This is a new setup.ASA ver is 7.0(8)IPS ver is 6.0(4)E1When I go to configure IPS within the ASDM it tells me "sensor major version is newer than the supported version"I presume I ne...

tdhb..hiq by Level 1
  • 1039 Views
  • 6 replies
  • 0 Helpful votes

I'm using a FWSM with static nat. I have an outside interface connected to the internet. I have an inside interface with security level 100. I added a second interface with security level of 100.With ACL I'm not able to allow traffic to pass from one...

cef2lion2 by Level 1
  • 756 Views
  • 3 replies
  • 0 Helpful votes

Resolved! ASA syslog

Why does the firewall block the following IPs? 207.105.ttt.ttt is the outside int. of the firewall. Below the syslog mssgs is the firewall's "access-list OUTSIDE-ACL". 06-23-2009 09:33:38 Local4.Warning 192.168.1.10 Jun 23 2009 09:06:52: %ASA-4-1060...

saidfrh by Level 1
  • 1367 Views
  • 3 replies
  • 0 Helpful votes

Hi,Is it mandatory that remote agent for ACS be installed on main domain server, would it work if it were to be installed on a virtual server which is member of the main domainserver?This is to be used for authentication with a vpn opertion.What impa...

suthomas1 by Level 6
  • 490 Views
  • 1 replies
  • 0 Helpful votes

hey all, we originally had a one-to-one static translation from private to public IP. the translation has been removed and the private is supposed to be using the global nat pool. but, for some reason, it is still using the public ip originally mappe...

Robert Ho by Level 1
  • 679 Views
  • 4 replies
  • 0 Helpful votes

DMZ = 172.16.1.0/24Screened Subnet (behind ASA) = 172.16.3.0/24I have numerous static NAT entries for HTTPS traffic to the 3.0 network, advertised on the outside as a 1.0 address.The 1.0 network is a directly connected network between my border and t...

I've seen some posts where the following scenario is working and most other posts that state that the following scenario cannot be accomplished on an ASA 5510.We have an ISP that is pushing out two separate public IP ranges, and we are to implement a...

We've got a security server running Retina that recently ran away and opened up tens of thousands of connections through our Pix 515E to devices it's supposed to scan. This caused memory on the PIX to run low, caused dropped connections on other ses...

Hi allWe have a redundant Cat6500-E with Sup720-3B and FWSM setup.Software releases:Sup: 12.2(33)SHX2FWSM: 3.2(6)The issue, if I add several new VLANs to the Catalyst and then give them to the FWSM with the command:firewall vlan-group 1 14-18,20,21,...

patoberli by VIP Alumni
  • 716 Views
  • 4 replies
  • 0 Helpful votes

All,I have an ASA 5505 that I'm trying to get a tunnel up with a 2800 series router. The tunnels get established, but the ASA side is encapsulating and not decapsulating traffic and I'm not able to pass traffic.I have the following:WinXP host (10.125...