We have a CSA Test server that we make lots of changes to on an ongoing basis. We'd like to know the recommended way to wipe out all of our changes and restore an original policy configuration. We'd also like to be able to import the policies fr...
We have a CSA Test server that we make lots of changes to on an ongoing basis. We'd like to know the recommended way to wipe out all of our changes and restore an original policy configuration. We'd also like to be able to import the policies fr...
Hi folks.I've searched through the online docs, but can't find a definitive answer to the following question:Can I upgrade the memory on a 5510 or 5520? I'm specifically referring to RAM, not to the flash/compact flash. One of my ASA's is only at 9...
Anyone know when this is coming out? Does it fix the sslvpn/Samba issue?
I am trying to configure an ASA5510 (v7.12) to allow an inbound connection over TCP port 9000. I have a web server on the inside that is listening on port 9000 (http://192.168.1.1:9000)I have setup a static NAT:static (inside,outside) 1.2.3.4 192.168...
Hi,If I use 2 asa 5510 with HA in mode A/A or A/P Is it possible in A/A mode to use one IPS module, except for security problem ?Or is it preferable to use asa as A/P.Regards
I have set up a VPN to a Watchguard Firebox. I thought it was a relatively easy build but now whenever the SA timeout occurs (8 hours), the VPN tunnel stays down. When I do a sh cry it appears to fail on the key exchange. Once, the remote site tech ...
Threat detection provides the option to shun addresses once a threat alarm has triggered. What is the shun timeout?
I want to put the ISDM "in-line" between my internet edge router and my firewall (FWSM which is in the same chassis as the IDSM). In order to have traffic flow from the internet edge router into the IDSM, then out of the IDSM to the FWSM, I will need...
Hello !!I am having some problems with ssl vpn and anyconnect client in asa 5505.The problem is, when I run the configuration wizard for SSL vpn, I follow the instructions and I type address pool for vpn users, add the anyconnect client, (anyconnect ...
I have the same scemario as in the example mentioned by the link below, but it doesnt work. I have opend a case with Cisco, got to tier 3 with no resolution ...I basically need to access from inside my DMZ servers on both the public and the dmz IPs. ...
Dear All,I have 1811 router with SDM , I wanted to enable the firewall capabilities using SDM to be in the medium level , in order to deny peer to peer and instant messengers.but I found the medium and high security levels are disabled.my IOS version...
Good day;PIX 525 with L.A.N Base stateful Failover U.R Bundle.PCI 1 - PIX-4FE-66PCI 2 - AvailablePCI 3 - VAC+First PIX-4FE-66int2 - is a DMZint3 - availableint4 and 5 Statefull FailoverProblem:When I install a second PIX-4FE-66 in PCI 2 of both the p...
Hi, we have an ASA 5510 with about 140 defined rules in the security policy.In our company there are some complaints about the performance throughput from one network (inside) to another (dmz).For example, we have a ecommerce platform that resides in...
Hi,I've a question concerning failover. My problem is that my customer has only 2 adresses for the outside interface (with a 255.255.255.252 mask). So we cannot configure a standby ip for this interface as the second ip is for the provider router. Is...
I'm trying to setup an SSL VPN box within a DMZ using a PIX 515. Basically I've setup the SSL box with a DMZ IP and NAT'd this to an external IP. I've put the following ACLs in:access-list INCOMING permit tcp any object-group SSL_BOX object-group WEB...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
| Subject | Author | Posted |
|---|---|---|
| 05-05-2026 09:59 AM | ||
| 05-02-2026 06:09 AM | ||
| 04-30-2026 12:46 AM | ||
| 04-24-2026 07:04 AM | ||
| 04-22-2026 11:56 AM |
| User | Count |
|---|---|
| 9 | |
| 2 | |
| 2 | |
| 1 | |
| 1 |