Can anyone suggest me a custom rule to scan the content while downloading from FTP.I have created a custom rule with Source IP and source port as any any. Destination IP stands as FTP Server with port 21.In detection options I am using Content with "...
-
AAA
(9) -
Access Control Server (ACS)
(6) -
Access List
(4) -
ACI
(10) -
Advanced Threats
(1) -
AMP for Endpoints
(1) -
AnyConnect
(3) -
APIs
(1) -
Appliances
(18) -
ASA
(1) -
ASR 1000 Series
(1) -
Branch Router
(2) -
Buying Recommendation
(85) -
Catalyst 2000
(1) -
Catalyst 3000
(2) -
Catalyst 4000
(1) -
Catalyst 6000
(1) -
Catalyst 8000
(1) -
Catalyst 9000
(2) -
Catalyst Switch
(2) -
Catalyst Wireless Controllers
(1) -
Cisco
(1) -
Cisco Adaptive Security Appliance (ASA)
(9,523) -
Cisco Bugs
(31) -
Cisco Cafe
(25) -
Cisco CLI Analyzer
(1) -
Cisco Cloud Services Router
(1) -
Cisco Defense Orchestrator (CDO)
(140) -
Cisco Firepower Device Manager (FDM)
(812) -
Cisco Firepower Management Center (FMC)
(2,909) -
Cisco Firepower Threat Defense (FTD)
(3,165) -
Cisco Press Cafe
(1) -
Cisco Secure Firewall Device Management (FDM)
(4) -
Cisco Secure Firewall Management Center (FMC)
(19) -
Cisco Secure Firewall Threat Defense (FTD)
(31) -
Cisco Security Cloud Control
(1) -
Cisco Security Manager (CSM)
(3) -
Cisco Software
(18) -
CISCO START ANZ
(1) -
Cisco Threat Response
(1) -
Cisco Vulnerability Management
(42) -
Cloud
(1) -
Cloud Security
(3) -
Community Bug or Issue
(1) -
Community Feedback Forum
(31) -
Community Ideas
(18) -
Compliance and Posture
(1) -
Crypto
(1) -
CSC Content with No Valid Community to Post
(1) -
CUBE
(1) -
CUCM
(1) -
Data Center Networking
(1) -
Device Admin
(13) -
EEM Scripting
(1) -
Emergency Responder
(1) -
Endpoint Security
(6) -
Enterprise Agreement
(1) -
Event Analysis
(258) -
FirePOWER
(1) -
Firepower Chassis Manager (FCM)
(2) -
Firepower Device Manager (FDM)
(16) -
Firepower Management Center (FMC)
(408) -
Firepower Threat Defense (FTD)
(221) -
Firewall Migration Tool (FMT)
(25) -
Firewalls
(1,171) -
FMC
(1) -
General
(2) -
Guest
(1) -
Identity Services Engine (ISE)
(9) -
IE3300
(1) -
Integrated Security
(8) -
Integrated Security Architecture
(1) -
Integrations
(3) -
Investigation
(2) -
iOS
(1) -
IPS and IDS
(6,569) -
IPS and IDS1
(1) -
IPS-IDS
(1) -
IPSEC
(1) -
ISE
(1) -
LAN Switching
(7) -
License
(320) -
MPLS
(1) -
Multicloud Defense
(2) -
Network Management
(91) -
Network Security
(2) -
Networking
(1) -
NFVIS
(1) -
NGFW Firewalls
(37,555) -
NGIPS
(1,872) -
Online Tools and Resources
(1) -
Open Source and Open Standards
(1) -
Optical Networking
(3) -
Optics
(1) -
Other Automation Analytics Topics
(1) -
Other Collaboration Topics
(1) -
Other Community Feedback
(5) -
Other Firewalls
(1) -
Other IP Telephony
(1) -
Other NAC
(18) -
Other Network
(1) -
Other Network Security Topics
(10,771) -
Other Networking
(8) -
Other Routers
(9) -
Other Routing
(24) -
Other Routing and Switching topics
(2) -
Other Security
(1) -
Other Security Topics
(18) -
Other Switches
(11) -
Other Switching
(4) -
Other VPN Topics
(1) -
Passive Identity
(1) -
Physical Security
(20) -
Policy and Access
(2) -
Prioritization
(2) -
Remote Access
(2) -
Room Endpoints
(1) -
Routing Protocols
(7) -
SD-WAN Security
(1) -
Secure Network Analytics
(1) -
Security
(3) -
Security Management
(626) -
Segmentation
(3) -
Service Providers
(1) -
Small Business Routers
(4) -
Small Business Security
(2) -
Sourcefire
(2) -
Support
(2) -
Threat Containment
(6) -
Threat Defense
(1) -
Unified Computing System (UCS)
(1) -
Voice Gateways
(1) -
VPN
(25) -
VPN and AnyConnect
(1) -
Vulnerability Management
(41) -
WAN
(7) -
Web Security
(5) -
Webex Teams
(1) -
Wired
(3) -
Wireless Security
(1)
- « Previous « Previous
- Next » Next »
Forum Posts
Resolved! Managment deploy configuration FMC.
Good day. I apologize for the stupid questions, but for some reason I cannot find the answer in the documentation. When making a change to FMC, data for the deployment to FTD is collected, in FMC you can see the configuration of which modules will be...
Hi, I have an ASA with FirePower and also have 2 x FMC in a HA configuration (over a layer 3). My question is, how does the ASA FirePower senor know how to failover to the secondary FMC in the event the primary FMC dies? Since the initial configura...
Resolved! arp permit-nonconnected
Hello,I'm in the process of upgrading our ASA software from 8.2 to 9.1 and I've noticed the 'no arp permit-nonconnected' command in our config. I had a look at the command reference http://www.cisco.com/en/US/docs/security/asa/asa90/command/reference...
Hellolooking for assistance. Trying to figure out if there is a way to restrict the type of syslog messages I'm seeing.For example, is there a way to filter out syslog message %ASA-6-302013, and only see syslog message Syslog Message %ASA-6-106100 wh...
I have a pair of ASA 5520s. When I SSH to the firewall i'm prompted for username. I put in my username, but when i am prompted for password i can just hit enter and I am allowed in. Then when I go to enable mode and prompted for password I can hit en...
We setup GEO blocking in Firepower which appears to be triggering events, however the blocked countries can still ping outside interface of ASA? Is this correct? or should I be seeing this blocked also?
Hi!Am trying to set up my network, the network will have inside, dmz1, dmz2 and outside interface. The most secure interface is dmz1 followed by dmz2 and then the inside interface. dmz1 and inside interface should ping each other. The inside interfac...
Hi All, Is there a best practise when configuring failover and statefu failover links between Firepower 4110 appliances? I want to configure both failover and stateful failover links, however I'm not sure if I should use a single 10GbE link for both ...
Resolved! ASA access-group question
If a firewall is configured with a global access-group and an interface in access-group, what the order that access-lists would be processed?
Hi Guys, Are there any way for me to see the bandwidth usage of a particular VLAN in FTD? Currently, only one VLAN is experiencing slow connection when they tried accessing to the internet and the other VLANs are not. Configuration wise, the only dif...
I've been using UptimeRobot for years as a first level of notification that there might be an issue at the office. It's worked well for what it does and it's free. For security reasons I want to disable ICMP on our main outside interface. I know I ca...
Resolved! Firepower FMC
Hi everyone, I have two firepowers configured via FDM and I just deployed an FMC VM, my question is if I add my devices in the Management Center, they will keep the settings or they will lose and I will have to reconfigure them from scratch. Thanks!
Hi Guys,Just to check with you, I created a QoS policy in FMC with the source interface of VLAN-A and VLAN-B with a 100 Mbps rate limit. Is the 100 Mbps shared between the VLAN-A and VLAN-B or not? Thanks
My question is how we allow VPN traffic via the outside interface but block internet traffic that happens to have the same source address as the remote VPN network ? If you disable the bypassing of interface access lists on an ASA using the "no sysop...