Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Adaptive Security Appliance, Secure Firewall Management Center, and Security Cloud Control.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Dear Sir,I would like to connect ASA 5510 8.0(3) to Microsoft ISA 2006 over IPSEC tunnel, but I have a problem.When ASA try to estabilish the tunnel i got the log status is: MM_WAIT_MSG2 When ISA try to estabilish the tunnel i got the log status is: ...

Hi Everyone,I'm working out a concept here and want to know if this can be done. On an ASA I would like to have 2 different interfaces connect to 2 different ISP's - one primary, one backup. As well I will be running VPN tunnels across the links. Wha...

bwgray by Level 3
  • 621 Views
  • 1 replies
  • 0 Helpful votes

Hey,I have 2 x pix515e's to setup. This is for a colo so there are no workstations/users on the lan/secured int. However i do have sql servers that i would like to keep out of the dmz from the web servers. should i setup the pix with 3 interfaces: 1 ...

jefforamma by Community Member
  • 755 Views
  • 1 replies
  • 0 Helpful votes

Just a quick open question I hope.After recently reading about reflexive access-lists on Routers I was wondering if they are required on Cisco PIX or ASAs?Or is this kind of thing taken care of as default behavious on a security module such as this?T...

good morning guys! we recently procured an ASA-5510 app. went thru the ASDM Setup wizard with External and Internal config. public and private IP's already established. accdg to the ASA doc, internal clients should be immediately able to get outbound...

jrdebugssc by Community Member
  • 619 Views
  • 1 replies
  • 0 Helpful votes

Hello All,I have a public IP and port (1.1.1.1:80) that is translated to a private IP:static (inside,outside) 1.1.1.1 192.168.1.1 netmask 255.255.255.255The ACL applied inbound on the outside interface permits any hosts to 1.1.1.1:80.My question is c...

cpalmerloopt by Community Member
  • 2314 Views
  • 10 replies
  • 0 Helpful votes

Hello,I've faced to an interesting thing at my GRE tunnels.sometime packets which I've defined a static route to tunnel as below don't route to GRE tunnel.ip route x.x.x.x 255.255.255.255 Tunnel0but when I remove it and add it after a short time it r...

mehrdad by Level 7
  • 2335 Views
  • 1 replies
  • 0 Helpful votes

Our setup is this. Call comes in via SIP Trunk, routes to CallManager through ASA and back out through to the remote site via VPN. Yeah, it's a complex setup I know. The problem is that when a caller calls and gets connected with a user, the calling ...

While in ASDM via the management interface, I get ASA log entries every 30 seconds with 'deny TCP (no connection) from *** to ***/443 flags FIN ACK on interface management'. Operation of ASDM is not impacted, but I'd like to correct this if possible.

mlpalmer by Level 2
  • 2470 Views
  • 4 replies
  • 0 Helpful votes

Dear All,I am thinking to configure a Policy Nat associated to a Static Identity Nat in order to exclude my internal networks from nat.access-list POI_NET1_POLICY_NAT extended permit tcp 192.168.0.0 255.255.252.0 object-group mail2 eq wwwstatic (insi...

ifabrizio by Level 5
  • 785 Views
  • 4 replies
  • 0 Helpful votes

Could someone explain the real differences between these two options on the ASA 8.2 release? I know a DMZ is assigned a different security level and the device has a real public IP assigned to it where the Public Server option is a server with a inte...