Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Adaptive Security Appliance, Secure Firewall Management Center, and Security Cloud Control.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Hi,I have a Linksys ADSL2 modem that can work as a transparent bridge. Various websites imply that when it is in this mode it changes the DSL to Ethernet and therefore I was wondering if anyone thinks it would be possible to setup the PIX as a PPPoE...

andyjg247 by Level 1
  • 883 Views
  • 7 replies
  • 0 Helpful votes

I want to use DMVPN and terminate the hub tunnels through a NAT boundary on a PIX firewall. Does this work? Can I just enable NAT-T on the pix and create a static NAT entry for the HUB device? The spoke routers will not have a PIX and will have stati...

pbrown by Level 1
  • 679 Views
  • 3 replies
  • 0 Helpful votes

Hi, I have 2 pic's I want to upgrade.The first one I upgrade in monitor mode no problem. But when I do the copy tftp to flash afterwards when it boots up, it gets an error from the file, I have tried everything I can think of. The 2nd pix gets the sa...

itchampnz by Level 1
  • 356 Views
  • 1 replies
  • 0 Helpful votes

Good day all, I would like to express my concerns with the fact that NSDB seems to now only be accessible through the web. We have used this NSDB on our closed network and cannot use it otherwise..........is it possible to have the full NSDB database...

s.breault by Level 1
  • 478 Views
  • 1 replies
  • 0 Helpful votes

Hi, I just got my ASA 5520 firewall with (ASA SSM-20 module) couple weeks ago, and I am trying to configure IPS features but I getting this problem:This is output from CLI:-------------Asa5520fw# session 1Opening command session with slot 1.Connected...

nowcom by Level 1
  • 472 Views
  • 3 replies
  • 0 Helpful votes

Noticed this error event on a sensor. I got the same ones for sigs 5378-0,5488-0,5528-0,5476-0.5557-0,5687-0,5524-0.What does it mean?evError: eventId=1130169990404666072 vendor=Cisco severity=warning originator: hostId: 02-evlan-c7 ...

mhellman by Level 7
  • 751 Views
  • 3 replies
  • 0 Helpful votes

I don't quite understand the context that is sometimes included with events. The event in particular I was looking at is 5442-0.First of all, what determines whether context is included with an event? The action for this particular signature is "pro...

mhellman by Level 7
  • 516 Views
  • 4 replies
  • 0 Helpful votes

Hi.I had IPS MC 2.1.0 (Build 123) functioning fine. I installed the idsmdc2.1.0-win-CSCsc336961.tar file in order to solve the CSCsc33696 bug. Next, I installed an update signature for IPS version 5 (But I didn´t has any IPS sensor version 5, I just ...

The sensor is inline and the webserver app has stopped. Also I am unable to create the service account because of an error: setenableAuthenticationtokenstatus: failure setting the account's password. Any ideas?

cjuba by Level 1
  • 477 Views
  • 2 replies
  • 0 Helpful votes

We have an IDS ver 4.1 in a cat 6k, and initially addressed it in a lab in vlan 1 as such:vlan 1: 161.220.60.1 /24IDS: 161.220.60.10 /24the IDS gateway is Vlan 1 ip. this has worked fine, able to ping and telnet btw. the 6k and the IDS. but in getti...

Hi,I am trying to enable my PIX for IPv6, so that I can connect from my internal LAN into my DMZ. But I run into some problems and I am not sure if I understand the IPv6 inplementation on the PIX correctly.In IPv4 I can create a connection from host ...

rri by Level 1
  • 318 Views
  • 1 replies
  • 0 Helpful votes

Hi All,Does anybody know how ids do tcp reset? in ios IDS, the router can send a reset packet, but in a real IDS, how can the ids tell the router to send a tcp reset packet?? Thank You!Best RegardsTeru Lei

teru-lei by Level 1
  • 883 Views
  • 1 replies
  • 0 Helpful votes

The signature id 5648 (Tomcat Denial of Service Attack) seams to be prone to false positives.... We have seen in a number of incidents, that when the destination of this attack uses the ephemeral port of 8007 with an established connection on TCP por...