I have been allocated two non-contiguoius subnets by the ISP, am I right that there is no way to support two subnets on an outside ( e0 ) interface ?
I have been allocated two non-contiguoius subnets by the ISP, am I right that there is no way to support two subnets on an outside ( e0 ) interface ?
I don't think I'll need nat enabled, but wanted to double check:My ASA that I'm configuring is behind another device that actually NATs the traffic for us. I have a public address assigned to my outside interface on the ASA and a private on the insid...
Using Tftpd32 TFTP server.Unable to load any software to any ASA firewall on the networkAccessing tftp://10.15.4.55/asdm-603.bin...WARNING: TFTP download incomplete!%Error reading tftp://10.15.4.55/asdm-603.bin (Unspecified Error)Tftpd32 works for al...
I'm creating statics like:static (dmz,outside) public dmz maskI thought I would just open the ports in the acl, but I know I can do something like:static (dmz,outside) public ip 80 dmz ip 80 netmaskIs this the "better" way of doing it, or does it rea...
I don't believe I will, but when creating acls in the dmz, I'll have to all the device in the dmz access to the internal network.permit ip dmz-host internal-hostWhy don't I have to create an entry for the dmz host on an acl that's applied to the insi...
Hello All,We are trying to upgrade the signature of an ASA-SSM-10 module from S372 to S388 and we are getting the same error: Error: execUpgradeSoftware : Target system does not have a valid license to process the config with the version S361.1.Pleas...
Hi All,This one has really got me scracthing my head. Imagine three interfaces INSIDE, OUTSIDE and DMZ at security levels 100, 10 and 100.Access rules are in place to permit traffic from INSIDE to DMZ and also INSIDE to OUTSIDE. There is also a 10.0....
folkscan an asa have two separate external interfaces, each using a different NAT, both connected to the same isp routeri need to route traffic from my internal network through the asa and filter it based on destination address - all for http traffi...
HelloHave An ASA with the following statements:ASA Version 7.2(4)9 route Inside 10.1.1.50 255.255.255.255 Y.Y.Y.Y 1route Inside 10.1.1.51 255.255.255.255 Y.Y.Y.Y 1route Outside 10.1.0.0 255.255.0.0 X.X.X.X 1Made a Change and only add The rule:route O...
I am a contractor with a client that is upgrading 7 Cisco ASA 5505's from 10-user license(s) to 50-user license(s). I have never run into a client of mine who didn't purchase an unlimited licensed Cisco product and have no clue what the procedure is...
how do i restore the default configurationi on a cisco 3002 VPN
Hi All, I'm new to the IDS/IPS and I have a basic question...I have an IPS Sensor 4240 configured as an IDS with all the default settings... My questions is:Will the Sensor alert the ASAs or routers when there's a signature match to apply an ACL for ...
It appears the S387 signature set contains quite a few new signatures. Many of the signatures are disabled by default, and the ones that I checked are for older vulnerabilities.Is this simply a back-fill of older vulnerabilities using the newer engin...
Hi All,I have an IPS module in a ASA via which we are planning to send l2tp traffic. Would it be possible for the IPS to insoect this traffic as it normmaly does with other traffic ?Thanks
All,I'm setting up acls for the inside, dmz1, dmz2 and external.My question is:I have a host on the inside that needs to get to the dmz. I have an acl on the inside and I'll need to permit this host to the dmz. I'll also need to create an acl on the ...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
Subject | Author | Posted |
---|---|---|
07-16-2025 04:21 AM | ||
07-06-2025 01:40 PM | ||
07-04-2025 01:59 AM | ||
06-19-2025 07:32 AM | ||
06-17-2025 01:07 PM |
User | Count |
---|---|
10 | |
5 | |
5 | |
2 | |
1 |