Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Adaptive Security Appliance, Secure Firewall Management Center, and Security Cloud Control.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Hello   I have a few 2960x switches on the network with 15.2.7.E5 code and we have internal scanners that are calling out the diffie-hellman 'kex' as weak ciphers and should be disabled. It appears that these DH cipher's are the only ones available f...

Hi I have 2xASA 5585 configured with multiple context running 9.4 (1) code base. During weekend, suddenly I missed ssh to the active ASA.  ssh ASA.ip ssh_exchange_identification: Connection closed by remote host debug ssh on the firewall gives  De...

kthned by Level 3
  • 26366 Views
  • 16 replies
  • 0 Helpful votes

 Hi,I wanted to use subinterfaces in the asa transparent mode but was only able to reach the ASA BVI but not any other IP.However, when I started using physical interfaces, I was able to reach everything. The rest of the config remain the same. Is th...

ziqex by Level 4
  • 418 Views
  • 1 replies
  • 0 Helpful votes

What is the difference between Firepower chassis manager and firepower device manager? Like a Firepower Management Center (FMC), a Firepower 9300 Series and 4100 Series security appliance has its own web interface, called Firepower Chassis Manager. T...

We followed the steps indicated in the following link for HYPER-V ASAv and it does not work. Only shows 1 interface no matter what we do. Wondering if there is a reliable and updated documentation that actually works. thankshttps://www.cisco.com/c/en...

ajc by Level 7
  • 324 Views
  • 0 replies
  • 0 Helpful votes

Can someone look at attached files pics and help me understand what the difference is between Dynamic Pat & Dynamic PAT (HIDE) ? It appears from this ASA config the Dynamic PAT (HIDE) was explicitly chosen for the Backup interface and I don't underst...

hi team, i am not able to change crypto key erro mention below Cennet_Internet_Rout(config)#crypto key generate rsa modulus 4096% You already have RSA keys defined named Cennet_Internet_Router.ndpl.com.% They will be replaced. % The key modulus size ...

  hi team, i am getting logs  below mention   138891: Sep 26 04:38:08.045: %SSH-5-SSH_COMPLIANCE_VIOLATION_RSA_KEY_SIZE: SSH RSA Key Size compliance violation detected. Kindly note that the usage of keys smaller than 2048 bits will be deprecated in t...