Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Hi,I'd like to apply individual shaping for different classes of traffic which are traversing an ASA.The documentation of ASA (8.0) tells me that "Traffic shaping must be applied to all outgoing traffic on a physical interface or in the case of the A...

I have a number of devices on the DMZ with a number of permits, but I see that last permit in the ACL is :access-list dmz_incoming extended permit ip any anyI would like to get rid of the ACL for the obvious reason but when I do, the devices are unab...

Hi,I try to send specific traffic (with ACL) to a separate sensor in the aip-ssm.When I check the counters of the vs on the module, there is no traffic inspected.My config looks like the following:ACL:access-list ips_dmz permit ip any host x.x.x.xacc...

Hi,I have a huge problem with one of my ASA 5505's. It seems like every month or so, my ASA crashes. The crash always occurs when a user tries to establish a SSL VPN connection.My other ASA's are working just fineI've added the output of show crashin...

Hi 1: DHCP is configured on a Switch , lease period is 30 days , Every time a PC reboots , its getting a new ip , please help me in fixing this . Please let me know more about dhcp database , will that be a solution to the lease problem ?2: i have go...

I have the following topology:6509---->ASA----->Internet.My 6509 have a IDSM.intrusion-detection module 3 management-port access-vlan 2intrusion-detection module 3 data-port 1 trunk allowed-vlan 352,603,1352,1603I want to put the IDSM between 6509 an...

I am upgrading IDSM software for the first time. The software file format is .pkg . Can I simply put it on the flash memory of the switch and upgrade from there just like IOS images? The difference is IOS images are .bin. What is the easiest way to u...

2 ASA boxes in failover mode.Say, if we have to physically remove one box from the pair, can we just remove it physically without any outage?Or is that services may be affected, as most of the devices off this firewall would be pointed to the vip ip ...

suthomas1 by Level 6
  • 400 Views
  • 1 replies
  • 0 Helpful votes

I was about to upgrade my FW pair from 3.1.2 to 3.2.6 and, as a rule, I'm supposed to upgrade the Secondary first, however, I cannot ping anything nor tftp anything from the secondary. I feel like I'm missing something very basic.Any Ideas?

tmcmurray by Level 1
  • 391 Views
  • 1 replies
  • 0 Helpful votes

Do the management interface routes tie in with the other routes on the ASA or are they separated? I'm trying to figure if say network 10.10.2.0 is granted management access would that that route conflict with site-to-site VPN traffic from the same so...

myounger by Level 1
  • 824 Views
  • 2 replies
  • 0 Helpful votes

HiI have established a VPN Lan to Lan connection between my office and a remote peer. The connection is used for ftp and files have been flowing through smoothly. Recently the connection became very slow and we suspected the Server which was very old...

judy.moyo by Level 1
  • 652 Views
  • 1 replies
  • 0 Helpful votes
Review Cisco Networking for a $25 gift card