Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Adaptive Security Appliance, Secure Firewall Management Center, and Security Cloud Control.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Hi,Recently I've started getting the an alert re: the number of connections to the Pix. The OID is: cfwConnectionsStatVal .1.3.6.1.4.1.9.9.147.1.2.2.2.1.5 I know the threshold set is not that high but the interesting thing is that, if anything, this...

m.surtees by Level 1
  • 504 Views
  • 2 replies
  • 0 Helpful votes

I've a PIX-515 firewall, running 7.2.2, in front of a private network. Servers in the private network are statically mapped to the external interface like this:static (inside,outside) tcp host-outside www host-inside 8080 netmask 255.255.255.255The p...

hws_admin by Level 1
  • 589 Views
  • 3 replies
  • 0 Helpful votes

Hello, I have setup SSL VPN on ASA. Users are authenticated using a Radius server (Not Cisco ACS). I need to know how to assign certain users to one policy and other users to another policy. Currently all the user get the same Webpolicy but I would ...

m-haddad by Level 5
  • 565 Views
  • 4 replies
  • 0 Helpful votes

I am using a VPN server which needs to proxy-arp for private interface traffic to assigned client pools. This is necessitated by the clustered aspect of the VPN service.I'm concerned that this will load my FWSM's arp table. The host 6509 has amaximu...

mryan by Level 1
  • 922 Views
  • 2 replies
  • 0 Helpful votes

I've been trying to work around a problem that has been driving me nuts for a long time. As far as I can tell IP INSPECT on 871's and 1811's (models I've tested) using a range of IOS versions from 12.3.8 to 12.4.11t can not handle sending traffic ov...

mcordiez by Level 1
  • 717 Views
  • 3 replies
  • 0 Helpful votes

Hi, I have a problem with an ASA5510 configuration: I opened access from outside to inside to a mail server and a service to an AS400. But static NAT doesn't work correctly: if I try from internet I can't, but if I try from a source address in the sa...

adinef001 by Level 1
  • 1253 Views
  • 7 replies
  • 0 Helpful votes

Can qos pre-classify be enable over an IPSec VPN running from a 3825 ISR router to a VPN concentrator? I know it will work over GRE and IPSec site-to-site VPN's where the termination point is a router but I'm not sure about the concentrator. Any th...

have been asked to convert an older checkpoint firewall, running on solaris to a cisco PIX. If you have hands-on experience performing this process, Can you share some of the gotcha or tipsthat I should be aware of, given the different architectures?...

helloip audit protected [ip address - ip address] according to cco it defines a protected address space for IDS, this is from cisco.An attack signature detects attacks attempted into the protected network, such as denial-of-service attempts or the ex...

lkrucker by Level 1
  • 765 Views
  • 4 replies
  • 0 Helpful votes

I have enabled blocking on a router to fire when a certain sig fires. this has been working for a while, I can see the ACL on the router with the host being denied access,so I know that it has been working. The sig fired today and the host was added ...