helloCan macsec be applied to span/mirror port on the switches?Thanks
helloCan macsec be applied to span/mirror port on the switches?Thanks
Hi team, Hopefully someone help with the problem that I am facing for quite some time... So I have three ASA devices in three different locations (different parts of the world), also I have a logging server on Azure. The goal is to make all three AS...
Hi there, Dear Members,i am using Cisco ASA 5520 firewall in my company, i am using the ACL to block some specific traffic for some clients, which is working fine, now i want to block specific websites through ASDm, can anyone help me how can i do th...
We recently ordered FPR1120-NGFW-K9 when we meant to order FPR1120-ASA-K9. I understand that the hardware is same; as such can we just load the ASA software into the device when we receive it and use that?
Hello everyoneI'm trying to migrate a QoS configuration from cisco ASA 9.8.4 to FTD 6.6.1 (using FDM or FMC ).The issue is about the ACL for QoS match is using a time-range and that point is very important for the migration.1- In FMC I checked the Qo...
HiWe have a Pair of FTD 2100 in HA I have been tasked with breaking this HA pair as we are reverting to single device, i cant seem to find any decent documentation on this can anyone point me to this and also provide instructions on breaking the pair...
asa 5525 Version 9.8(2) We all have 4096 bit public keys. These apparently are too big for the character buffer (ERROR: Input line size exceeded available buffer (510 characters). in other cisco gear I've used "fold -b -w 72 ..."on the *nix box, ...
Hi there, I have been trying to implement DSCP filtering on a ASA 5506-X, using class maps. But have not been able to get it configured and working. It seems that the commands to do it are there, but looking at general DSCP filtering examples, I'm ...
Hello Our internal network security team has idntified Vulnerability regarding the SSH server within the catalyst switches.As per the Vulnerability team SSH is configured to allow MD5 and 96-bit MAC algorithms for client to server communication.These...
Do the Firepower appliances have the ability to show the L7 apps used by a rule similar to Palo Alto's Usage feature? From what I've found, the only way to see the app used by a rule is to check the event explorer and filter on the rule name. This us...
hi,i would need to change one of the ASA logical nameif in order to standardize it.i know i've done this before but was a very long time and couldn't remember whether changing the nameif will 'auto' update any related config: ACL group, routes, HTTP/...
Dears I have allowed to access a websever on HTTPS port onlythe problem is when a client tries to access HTTPS , firepower will allow client to access webserver and in event viewer will show ClientIP:sourceport to WebServer:443 allowed but the prob...
Hi Guys,I am just wondering where is the best placement for a firewall doing an SSL decryption? If I have a multi-tier firewall in the network, tier-1 which is facing outside network will definitely needs SSL decryption but how about internal firewal...
Hi all, Possibly posted in the wrong place but after some advice please. We have Cisco Prime infrastructure 3.1 and we have added our ASA's to it (5555-x and 5585-x). I have read that these devices are supported but it does't say to what degree....
I have number of servers with Redis Pipeline (redis.io/topics/pipelining) enabled. A FTD is managing routing access between servers like this:Redis client --->FTD--->Redis Servers192.168.2.10/24-->192.168.70.33/24192.168.2.10/24-->192.168.70.34/24192...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
| Subject | Author | Posted |
|---|---|---|
| 11-13-2025 12:52 PM | ||
| 11-13-2025 02:22 AM | ||
| 11-03-2025 09:48 AM | ||
| 10-30-2025 12:44 PM | ||
| 10-23-2025 07:14 AM |
| User | Count |
|---|---|
| 3 | |
| 3 | |
| 3 | |
| 2 | |
| 2 |