Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Adaptive Security Appliance, Secure Firewall Management Center, and Security Cloud Control.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

hi, I run CNR 6.2.2 and cmts with subinterface. When one cable modem wants to regester and the following information will appear in CNR log.i have disable dhcp server attribute"vpn-communication" and ignore-optionslike option 82, 220 but the situa...

mishao by Level 1
  • 748 Views
  • 2 replies
  • 0 Helpful votes

Hello All,We have deployed VPN's via ethernet and we integrate that via dot1q VLAN's on a subinterface on a GigEthernet. We then make those a member of a specific vrf forwarding VPN for example.interface GigabitEthernet0/1.101 description VPN-CUST1 ...

Can someone please explain briefly when should I use the HTTP/FTP AIC signature engine over any other type?I ask this question because for instance the FTP commands can be looked for in either String TCP engine, Atomic TCP or FTP AIC engine, but whic...

I am trying to build a custom signature for detecting non-SSL traffic on a specific SSL port (let's say tcp/443). This has to do with CONNECT tunnels through an HTTP proxy. Conceptually, it's not a complicated idea. Whether or not it can technically ...

mhellman by Level 7
  • 1187 Views
  • 3 replies
  • 0 Helpful votes

Is it possible to correct incoming and outgoing packet's MTU size for example to 1200 ? on ONE virtual interface ... for example named as "testing" ...is it possible to correct MTU size of packets going to/from selected host ?

Greetings all,I need some help with the following scenario. Site A is 192.168.100.x network with all computer default gateway pointed to the inside of the PIX 515E (192.168.100.1). Site B is 192.168.101.x network with all computer points to the insid...

pixypoo76 by Level 1
  • 610 Views
  • 2 replies
  • 0 Helpful votes

HiI need to allow nfs (IP x.x.x.x) to be mounted from my internal network to a server in the dmz (y.y.y.y). Could someone please help me with this.I've attached my config for reference.Thanks in advance for any helpDan

dan_track by Level 1
  • 387 Views
  • 1 replies
  • 0 Helpful votes

Hi!We have ASA5520 and we are considering implementing ssl/webvpn.I have a few questions about this. 1. what is the diffrence between Webvpn and ssl-vpn.2. Can you use Cisco Secure Desktop with ssl-vpn or only with Webvpn?3. Are there any limitations...

miwiconab by Level 1
  • 415 Views
  • 1 replies
  • 0 Helpful votes

Resolved! IPS 5.0(6)S220

Upgraded from version 4.1(5). Using the CLI how do I get the entire configuration file (sensor settings and signatures) copied back in a config file. In version 4.1(5) this was possible, but in version 5.0(6) it no longer copies the sensor settings a...

5creedus by Level 1
  • 618 Views
  • 2 replies
  • 0 Helpful votes

I am trying to design redudancy into my network and while fooling around with ideas on paper i came up with some questions. i have two internet routers with two different ISPs. They will be running Gateway load balancing protocol between them and eac...

Hi,Has anyone tried using NAC alongwith Auth-Proxy at the same time ? E.g. Same admission rule configured both for eapoudp and auth-proxy.The goal is1. Have all Users go through NAC. The downloaded ACL after NAC validation isdeny ip any xpermit ip an...

mnlatif by Level 3
  • 430 Views
  • 1 replies
  • 0 Helpful votes

Hi AllCurrently I have x.x.x.64 255.255.255.240 being handled by dmz2 on my pix.The pix has the following set:nat (dmz2) 0 x.x.x.64 255.255.255.240 0 0It also has:static (dmz2,outside) x.x.x.76 x.x.x.76 255.255.255.255 0 0My question is if the dmz is...

dan_track by Level 1
  • 424 Views
  • 2 replies
  • 0 Helpful votes