Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Hello everyoneI'm trying to migrate a QoS configuration from cisco ASA 9.8.4 to FTD 6.6.1 (using FDM or FMC ).The issue is about the ACL for QoS match is using a time-range and that point is very important for the migration.1- In FMC I checked the Qo...

Resolved! FTD 2100 HA Pair

HiWe have a Pair of FTD 2100 in HA I have been tasked with breaking this HA pair as we are reverting to single device, i cant seem to find any decent documentation on this can anyone point me to this and also provide instructions on breaking the pair...

benolyndav by Level 4
  • 3326 Views
  • 12 replies
  • 0 Helpful votes

Hi there, I have been trying to implement DSCP filtering on a ASA 5506-X, using class maps.  But have not been able to get it configured and working.  It seems that the commands to do it are there, but looking at general DSCP filtering examples, I'm ...

BK2021 by Level 1
  • 1145 Views
  • 5 replies
  • 0 Helpful votes

Resolved! SSH Algorithm

Hello Our internal network security team has idntified Vulnerability regarding the SSH server within the catalyst switches.As per the Vulnerability team SSH is configured to allow MD5 and 96-bit MAC algorithms for client to server communication.These...

sameermunj by Level 1
  • 17424 Views
  • 10 replies
  • 0 Helpful votes

Do the Firepower appliances have the ability to show the L7 apps used by a rule similar to Palo Alto's Usage feature? From what I've found, the only way to see the app used by a rule is to check the event explorer and filter on the rule name. This us...

Scott_22 by Level 1
  • 1557 Views
  • 0 replies
  • 0 Helpful votes

hi,i would need to change one of the ASA logical nameif in order to standardize it.i know i've done this before but was a very long time and couldn't remember whether changing the nameif will 'auto' update any related config: ACL group, routes, HTTP/...

Hi Guys,I am just wondering where is the best placement for a firewall doing an SSL decryption? If I have a multi-tier firewall in the network, tier-1 which is facing outside network will definitely needs SSL decryption but how about internal firewal...

Hi all,   Possibly posted in the wrong place but after some advice please.    We have Cisco Prime infrastructure 3.1 and we have added our ASA's to it (5555-x and 5585-x). I have read that these devices are supported but it does't say to what degree....

pick25690 by Level 1
  • 2644 Views
  • 4 replies
  • 0 Helpful votes

I have number of servers with Redis Pipeline (redis.io/topics/pipelining) enabled. A FTD is managing routing access between servers like this:Redis client --->FTD--->Redis Servers192.168.2.10/24-->192.168.70.33/24192.168.2.10/24-->192.168.70.34/24192...

I am about to uprade two FTD 4110 FXOS. The first upgrade has been succeced on the Secondary and then I tried do run the same steps on the primery FTD. I has been runing upgrade in more than 2 hours on the primery FTD now and I am soure that some thi...

Hello everyone, I am currently in the process of rolling out Dot1x in a small classified network. The network has the following: (12) Windows 10 Machines using native supplicant software(1) Cisco C9300 acting as the authenticator(1) Cisco ISE acting ...

Review Cisco Networking for a $25 gift card