Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Why are some signatures a "component of" some other signature. Does this mean they depend on each other to work properly?Example is Signature 5748/1This is a component of meta signature 5748-0 and has no event actions of its own defined..

kutukutu9 by Level 1
  • 560 Views
  • 2 replies
  • 0 Helpful votes

Please do somebody know - if I adjust in policy map on ASA two classes - first for specific ip addressess (for which I dont want H323 inspection) and second global-all addresses all inspections. It means that packets from first rule will also conform...

HiIs it possible that in the CLI to find out in what object-group(s) that a specific IP is located?I'm currently just dumping the configuration and using wordpad to search it through. It sucks but its the easiest way, for me atlest. It might be easy ...

azore2007 by Level 1
  • 695 Views
  • 5 replies
  • 0 Helpful votes

How can I block Lime wire on my router 2800 I tried build in feature through SDM but limewire still works. I even tried to block port 6346-47. no luck,,,,,,,Please help.

raimj by Level 1
  • 384 Views
  • 1 replies
  • 0 Helpful votes

Hi allI'm trying to design a data center security solution. I have a 6509 E with sup 720 and FWSM. My concern now is whether to go for IDSM or a 4200 sensor. I know about the through put limitations of both products. Can you all highlight any other p...

thedinuka by Level 1
  • 694 Views
  • 2 replies
  • 0 Helpful votes

Today, ips-4250-sx (not-in-line) upgraded from v6.0(4)E1 to 6.0(5)E2. (S335) to (S339)1st appearance & flood of red alerts,all internal sources and destinations:1) Windows DCOM Overflow 0&1 subsigs: (1100src/100dst=86k total hits)2) Netware LSASS CIF...

wgorman by Level 1
  • 1591 Views
  • 8 replies
  • 0 Helpful votes

Resolved! Shun Interface

When shunning, how is the interface decided?show shunshun (outside) 1.1.1.1 0.0.0.0 0 0 0shun (inside) 2.2.2.2 0.0.0.0 0 0 0I believe both IP addresses should be shunned on the outside interface.

rmeans by Level 3
  • 781 Views
  • 2 replies
  • 0 Helpful votes

Has anyone else been running a 4270 sensor in production with traffic at 1Gb/s or more?I'm interested in discovering if the symptoms we're seeing are unique with the default signature policy and 6.0(5)E2:Event Store wrapping every 60-90 seconds, maki...

rhermes by Level 7
  • 668 Views
  • 1 replies
  • 0 Helpful votes

I was successful in configuring my ASA 5510 to allow on incoming queries on port 80 to 204.xxx.xxx.178 to be redirected to port 8123 and go to the internal IP of 192.168.100.178.I set this up on the ASDM under the NAT Rules section. I used the PAT s...

kerryjcox by Level 1
  • 629 Views
  • 2 replies
  • 0 Helpful votes

I have a Pix-535. It was running fine for couple of weeks, until I turned it off and on again. After that, the pix run for 5 to 10 minutes and the begin lock out traffics and console. If I did a reboot on it, it doing the same thing.

ocer714ca by Level 1
  • 371 Views
  • 1 replies
  • 0 Helpful votes
Review Cisco Networking for a $25 gift card