Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Cisco CyberSecurity

Labels

Forum Posts

Hi,    I noticed the default hello/hold timers on FTD (Cisco FTD 4110 6.3) are 60/180 seconds, although the link speed is more than T1 speed - link is 20 Gbps. The other end of my FTD is a Catalyst 9500 with default timers of 5/15 seconds. I can chan...

rick505d3 by Level 1
  • 842 Views
  • 1 replies
  • 0 Helpful votes

Hello Community Members,  I've just recently run accross my config and noticed I have an Internal Control and Internal Data interfaces in my Cisco ASA 5516-x.  Internal-Control1/1 127.0.1.1 YES unset up upInternal-Data1/1 unassigned YES unset down do...

Gerorymo by Level 1
  • 5957 Views
  • 1 replies
  • 0 Helpful votes

hi I'running Cisco FMC on VMware, what I did was in the GUI in the The Access List,removed any, replaced with my LAN ip subnet as source for:    443 (HTTPS)—Used for web interface access.    22 (SSH)—Used for command line access. "By default, access ...

dkcowboy by Level 1
  • 4486 Views
  • 2 replies
  • 0 Helpful votes

Here is the setup.  I have a single ASA, and single Microsoft NPS server acting as the Radius server.  I would like to have two VPN group profiles on my NPS server, one for each of my two user groups. In the past, I have resorted to using two NPS/Rad...

i have some problems about packet-tracer in ASA9.8, The asa config Static NAT and dynamic PAT packet-tracer input outside tcp IP_1 50021 IP_2 21   IS IP_1 is real address and IP_2 is Mapping address ?     thanks zhixin

Zhixin by Level 1
  • 1412 Views
  • 0 replies
  • 0 Helpful votes

Hello community,sorry for my bad english,i want use function remove objects "Not Used" for cisco ASA 5515, but my team say it this can lead to bad consequences (nat, acl remove). I can not find to what exactly problems. Is there a risk?

dmnsrk by Level 1
  • 1855 Views
  • 4 replies
  • 0 Helpful votes

According to NAT section rule section 2 should be processed before section 3. In my test LAB the section 3 get processed. In other words Twice-NAT (after-auto) get processed. Expected is section 2 object NAT + PAT       There are two rules 1) Object...

ASA-NAT-TEST.JPG