Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Enabling our customers to leverage their install base and take them to the next level with Cisco Secure Firewall Threat Defense has always been a key priority.  The migration tool is available for download to migrate the configuration on the on-premi...

gopaks by Cisco Employee
  • 305 Views
  • 0 replies
  • 4 Helpful votes

Hi,logging monitor debugging enabled terminal monitor on I want only output of  only debug crypto ikev2 platformbut all other traffic  also showing , how can I  filter ?Thanks 

Hi All, I am looking for a few more details regarding the Cisco FPR-4140-NGFW device, which I cannot explicitly find in the hardware guides. The documentation says that apart from 8-fixed 1G/10G SFP ports, there are 2 network modules as well. I wante...

varrao by Level 10
  • 1451 Views
  • 2 replies
  • 0 Helpful votes

I am able to ssh inside IP address from a seaprate SecureCRT session. But when I ssh from a Cisco isr4331 router i am getting following error [Connection to IPADDRESS aborted: error status 0]. I did confirm Data Interface is allowing Inside interface...

Hi,I have four admin users on my ASA all with level 15 access but not of them are able to SSH to my device.I have checked SSH settings and it is allowed. Is there anything I could have overlooked? I'm sure this has worked in the past as the device is...

SSH.JPG

Hei,I am trying to register FTDv in Azure to FMC on-prem over express route. I am getting error " "Discovery failed due to internal error contact TAC". I also see communication established messages. Used same configure manager add IP key nat-id on bo...

mateens by Level 1
  • 3730 Views
  • 14 replies
  • 0 Helpful votes

Hopefully my terminology is correct. I'm not a Cisco expert by any means. I have an ASA5506 at SiteA listening on 10.10.1.1 and an ASA5506 at SiteB listening on 10.10.20.1 and a site-to-site VPN between the two. I have another device at SiteA listeni...

NAT

Hi, I want to do a static nat for 192.168.1.10  to 2.2.2.10 so that the traffic comes through the second ISP. What need to be done on ASA side to achieve the above load balancer is a third party appliance  Thanks  

asa-pep.png

The ICMP logs (ASA-6-302021) we are currently receiving from the ASA do not contain the byte count for the packet. Is this design intent or a config issue?With the rise in hackers using icmp for exfil this is a critical piece of data. TIA Ihor