Can you use the Management interface as another zone/security index to pass traffic like all the other interfaces.
Can you use the Management interface as another zone/security index to pass traffic like all the other interfaces.
Hi,We want to create ipsec site to site tunnel with multiple(3 to 5) site thru internet, pls. suggest a products that is worthy both costing n functional.we are using ASA 5505 at remote site
Hi allFriends, I have 2 ASA FW 5520 and 5505, and they are connected with each-other VIA VPN. I have mail server MS exchange, Domain, Share point and etc... inside 5520. And my question is next: Is it possible that users from 5505 could send and rec...
Hi,I'm unable to ssh into our fwsm today - there's nothing in the logs and all ssh commmands are still present - we've had this before and I have to re-generate the rsa key, and I'm fairly certain that's what I need to do now but the old ca commands ...
Hello,I have to setup two port redirections on our PIX. I need this two redirections:Outside-IP 212.6.1.1 to SSN 10.10.10.2for port 443 (HTTPS).Outside-IP 212.6.1.1 to SSN 10.10.10.253 for port 23 (Telnet).The access should be possible from any sourc...
I currently have a 3725 + the NM-CIDS module doing my firewall / IPS / VPN.I'm considering upgrading to a ASA 55xx box. I was reading the product page, and it does not seem that I can have one ASA box that does both the IPS with an AIP-SSM-xx and the...
Greetings,I have been able to setup failove for two Cisco ASA devices and they seem to be functioning- used two physical Interfaces, one for LAN and one for State as those resources were not needed for DMZ or things like that.Now, My question migt re...
Hi Guys, Im planning to install asdm on my newly upgrade PIX 525 ve722. I just want to know if i need to install the asdm on my failover pix. Is there any problem if i just install it in one of my pix (active) only? What is the most stable asdm i...
I have a customer that runs large oracle queries (1521)that the PIX sees as idle connections. I've tried classifying the traffic and using polic-maps to set the connection to not timeout (0:0:0) with no luck. Any suggestions?
Using DefaultL2LGroup tunnel-group, I am able to bring up a L2L tunnel from an IOS Cisco871 hub that is dynamically addressed to a static spoke ASA running 8.x. Authentication is via PSK. How can I use a tunnel-group other than DefaultL2LGroup? It se...
The firewall syslog message shows "..Received ARP response collision from 10.168.1.254/001d.e6f2.f7c0 on interface Inside. I can not see any documentation for 10.168.1.254/001d.e6f2.f7c0. Any suggestions on how to track the IP/mac address? Thanks
Hi,I need to add a user to my ASA, but at a very limited level, but just realised I have no idea what the 15 levels are, can you help?Thanks
Hi all,I need to configure an inbound nat rule on a PIX firewall so that a network that comes in through a VPN on the outside interface translates to a dmz interface (PAT).I have the configuration in place to setup all the translation rules without t...
I have tried adding an additional Ethernet card (PIX-4FE-66) on to the PIX 535 firewall cluster running software Version 7.0(4). Firewalls are running in active/standby failover mode through a dedicated LAN cable.After shutting down and disconnecting...
I have clients running Exchange Server 2003. More than one of them are plagued by (presumably) scripted attempts to log in to their SMTP server, using a long list of common American names. Please forgive what is undoubtedly a basic question--but can ...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
| Subject | Author | Posted |
|---|---|---|
| 05-05-2026 09:59 AM | ||
| 05-02-2026 06:09 AM | ||
| 04-30-2026 12:46 AM | ||
| 04-24-2026 07:04 AM | ||
| 04-22-2026 11:56 AM |
| User | Count |
|---|---|
| 9 | |
| 2 | |
| 2 | |
| 1 | |
| 1 |