Hi;How many interface should be reserved in the ASA A/A setup for inside and for outside ?Thx
Hi;How many interface should be reserved in the ASA A/A setup for inside and for outside ?Thx
Hi,We have PIX 501 configured with PAT for general Internet access, no ACL applied to inside interface. Sometimes some of the users cannot access services on the Internet (ports 80, 25), they can access those services on the LAN so I think the PIX is...
Hi all, I use Catalyst 6513 + IDSM-2, I also use Cisco Work VMS 2.3 to manage IDSM-2. Now, I want to configure whenever IDSM-2 sees an attack, it sends snmp or some thing like that by syslog to VMS server. If you see unclearly, you can ask me. Duy K...
Hi,I was trying to configure outside nat to allow a host on the dmz (FLSM) interface to telnet to a host on the inside interface. I gave up and called cisco tac. They were able to get it to work for me by combining a nat 0 command with outside nat. B...
i read in the cisco documentation that if i want users on the outside interface (lower security level) telnet to inside interface (higher security level) we should use static with access-list to allow the traffic. Now this is called translation, righ...
Hello all, I am having an issue with one of our VPN's that was recently setup and I am seeing ICMP errors. When I send a simple ping test to the destination IP, I am seeing the following messages while running the debug log-viewer:208.x.x.x|Built ICM...
Hello,I have a softphone using SIP on port 5060. I check the PIX 501 (version 6.3(3), using show conn, but all I can see is the connection to the voice gateway on a different port (eg.29051). If I use the softphone on an internet connection without a...
Hi,We have a customer that is having problems with one specific client-server application. The app protocol looks kind of like HTTP on the wire, but isn't. The server is on the Internet, and the client is behind the 'inside' interface. Whenever th...
Hello,My client has a ASA5520 with a SSM IPS module. I never worked with the IPS module and have been asked to set this up. I upgraded the IPS to 6.0x and IPS signatures (S266), but I do not see any alerts or blocks from the IPS. I have run NMAP s...
Hi,Is there any option that I can get the output of show connection to syslog server.
I've upload a new flash image to my ASA and can see it when doing a "Sh Flash" command.However, we rebooting it is not used. What is the proper procedure to get it to use an image file?Would I use...boot system flash:/asa722-k8.binWe are currently ...
Hi Everyone,I would like to create a signature to look for SMTP "command mail from:<>". Is this the right regex statement to look for this traffic?[Mm][Aa][Ii][Ll] [Ff][Rr][Oo][Mm][:][<>]
We are running an ASA5520 on 7.2 (2) code and are experiencing underruns/overruns on all 3 of our firewall interfaces. The speed and duplex settings are correct and there are no collisions, input or output errors. Below are the interface definition...
Hello,We must used the feature DNS rewrite with pix 515E os 7.2.2 but it doesn't work.I just use this static rule :static (inside,CAG) 172.21.250.1 170.250.249.8 netmask 255.255.255.255 dnswhen i'm connected to dmz cag i make a dns request to dns ser...
Hi,i need alittle help with my PIx 515. we have a bunch of current acl's for a segment of our network and i need to put one in with a range of udp ports. i cant figure this one out, even looking at the command sequence. i have many with one port o...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
| Subject | Author | Posted |
|---|---|---|
| 05-06-2026 02:31 PM | ||
| 05-05-2026 09:59 AM | ||
| 05-02-2026 06:09 AM | ||
| 04-30-2026 12:46 AM | ||
| 04-24-2026 07:04 AM |
| User | Count |
|---|---|
| 9 | |
| 2 | |
| 2 | |
| 1 | |
| 1 |