Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Adaptive Security Appliance, Secure Firewall Management Center, and Security Cloud Control.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

I have a number of devices on the DMZ with a number of permits, but I see that last permit in the ACL is :access-list dmz_incoming extended permit ip any anyI would like to get rid of the ACL for the obvious reason but when I do, the devices are unab...

Hi,I try to send specific traffic (with ACL) to a separate sensor in the aip-ssm.When I check the counters of the vs on the module, there is no traffic inspected.My config looks like the following:ACL:access-list ips_dmz permit ip any host x.x.x.xacc...

Hi,I have a huge problem with one of my ASA 5505's. It seems like every month or so, my ASA crashes. The crash always occurs when a user tries to establish a SSL VPN connection.My other ASA's are working just fineI've added the output of show crashin...

Hi 1: DHCP is configured on a Switch , lease period is 30 days , Every time a PC reboots , its getting a new ip , please help me in fixing this . Please let me know more about dhcp database , will that be a solution to the lease problem ?2: i have go...

I have the following topology:6509---->ASA----->Internet.My 6509 have a IDSM.intrusion-detection module 3 management-port access-vlan 2intrusion-detection module 3 data-port 1 trunk allowed-vlan 352,603,1352,1603I want to put the IDSM between 6509 an...

I am upgrading IDSM software for the first time. The software file format is .pkg . Can I simply put it on the flash memory of the switch and upgrade from there just like IOS images? The difference is IOS images are .bin. What is the easiest way to u...

2 ASA boxes in failover mode.Say, if we have to physically remove one box from the pair, can we just remove it physically without any outage?Or is that services may be affected, as most of the devices off this firewall would be pointed to the vip ip ...

suthomas1 by Level 6
  • 432 Views
  • 1 replies
  • 0 Helpful votes

I was about to upgrade my FW pair from 3.1.2 to 3.2.6 and, as a rule, I'm supposed to upgrade the Secondary first, however, I cannot ping anything nor tftp anything from the secondary. I feel like I'm missing something very basic.Any Ideas?

tmcmurray by Level 1
  • 439 Views
  • 1 replies
  • 0 Helpful votes

Do the management interface routes tie in with the other routes on the ASA or are they separated? I'm trying to figure if say network 10.10.2.0 is granted management access would that that route conflict with site-to-site VPN traffic from the same so...

myounger by Level 1
  • 852 Views
  • 2 replies
  • 0 Helpful votes

HiI have established a VPN Lan to Lan connection between my office and a remote peer. The connection is used for ftp and files have been flowing through smoothly. Recently the connection became very slow and we suspected the Server which was very old...

judy.moyo by Level 1
  • 707 Views
  • 1 replies
  • 0 Helpful votes

I have an ASA 5520 with EIGRP enabled and am redistributing static routes. I have a static route that is attached to an interface. If that interface goes down will the ASA still distribute that route?Thank You

jeff.cook by Level 1
  • 1727 Views
  • 1 replies
  • 0 Helpful votes