Is it common to create a rule to deny outside traffic or is it ok to use the default action to block all if a match isn't made? Thoughts?
-
AAA
(8) -
Access Control Server (ACS)
(6) -
Access List
(4) -
ACI
(10) -
Advanced Threats
(1) -
AMP for Endpoints
(1) -
AnyConnect
(3) -
APIs
(1) -
Appliances
(18) -
ASA
(1) -
ASR 1000 Series
(1) -
Branch Router
(2) -
Buying Recommendation
(83) -
Catalyst 2000
(1) -
Catalyst 3000
(2) -
Catalyst 4000
(1) -
Catalyst 6000
(1) -
Catalyst 8000
(1) -
Catalyst 9000
(2) -
Catalyst Switch
(2) -
Catalyst Wireless Controllers
(1) -
Cisco
(1) -
Cisco Adaptive Security Appliance (ASA)
(9,488) -
Cisco Bugs
(22) -
Cisco Cafe
(25) -
Cisco CLI Analyzer
(1) -
Cisco Cloud Services Router
(1) -
Cisco Defense Orchestrator (CDO)
(133) -
Cisco Firepower Device Manager (FDM)
(795) -
Cisco Firepower Management Center (FMC)
(2,873) -
Cisco Firepower Threat Defense (FTD)
(3,112) -
Cisco Press Cafe
(1) -
Cisco Security Manager (CSM)
(3) -
Cisco Software
(17) -
CISCO START ANZ
(1) -
Cisco Threat Response
(1) -
Cisco Vulnerability Management
(40) -
Cloud
(1) -
Cloud Security
(3) -
Community Bug or Issue
(1) -
Community Feedback Forum
(31) -
Community Ideas
(18) -
Compliance and Posture
(1) -
Crypto
(1) -
CSC Content with No Valid Community to Post
(1) -
CUBE
(1) -
CUCM
(1) -
Data Center Networking
(1) -
Device Admin
(13) -
EEM Scripting
(1) -
Emergency Responder
(1) -
Endpoint Security
(6) -
Enterprise Agreement
(1) -
Event Analysis
(255) -
FirePOWER
(1) -
Firepower Chassis Manager (FCM)
(2) -
Firepower Device Manager (FDM)
(16) -
Firepower Management Center (FMC)
(408) -
Firepower Threat Defense (FTD)
(221) -
Firewall Migration Tool (FMT)
(21) -
Firewalls
(1,171) -
FMC
(1) -
General
(2) -
Guest
(1) -
Identity Services Engine (ISE)
(9) -
IE3300
(1) -
Integrated Security
(8) -
Integrated Security Architecture
(1) -
Integrations
(3) -
Investigation
(2) -
iOS
(1) -
IPS and IDS
(6,564) -
IPS and IDS1
(1) -
IPS-IDS
(1) -
IPSEC
(1) -
ISE
(1) -
LAN Switching
(7) -
License
(315) -
MPLS
(1) -
Multicloud Defense
(1) -
Network Management
(88) -
Network Security
(2) -
Networking
(1) -
NFVIS
(1) -
NGFW Firewalls
(37,547) -
NGIPS
(1,872) -
Online Tools and Resources
(1) -
Optical Networking
(3) -
Optics
(1) -
Other Collaboration Topics
(1) -
Other Community Feedback
(4) -
Other Firewalls
(1) -
Other NAC
(18) -
Other Network
(1) -
Other Network Security Topics
(10,757) -
Other Networking
(8) -
Other Routers
(9) -
Other Routing
(23) -
Other Routing and Switching topics
(2) -
Other Security
(1) -
Other Security Topics
(18) -
Other Switches
(11) -
Other Switching
(4) -
Other VPN Topics
(1) -
Passive Identity
(1) -
Physical Security
(20) -
Policy and Access
(2) -
Prioritization
(2) -
Remote Access
(2) -
Room Endpoints
(1) -
Routing Protocols
(7) -
SD-WAN Security
(1) -
Secure Network Analytics
(1) -
Security
(2) -
Security Management
(618) -
Segmentation
(3) -
Service Providers
(1) -
Small Business Routers
(4) -
Small Business Security
(2) -
Sourcefire
(2) -
Support
(2) -
Threat Containment
(5) -
Threat Defense
(1) -
Unified Computing System (UCS)
(1) -
Voice Gateways
(1) -
VPN
(24) -
VPN and AnyConnect
(1) -
Vulnerability Management
(40) -
WAN
(7) -
Web Security
(5) -
Webex Teams
(1) -
Wired
(3) -
Wireless Security
(1)
- « Previous « Previous
- Next » Next »
Forum Posts
Hi All,I have 2 ASA5525x in failover state both with Firepower SFR installed on it. I configured SSL policy a year ago and it was working well. Last month we have migrated Terminal Server of Users to new VM and I started to see a lot of logs on ASDM ...
What are the main differences between the 5515-X and the 5516-X? Odd that their model numbers are 1-digit apart. The form factor is different, the 5515-X being a longer, silver appliance. The 5516-X is a shorter appliance with the black and red st...
Hi Everyone, I've been involved in a project where a firepower 2110 series appliance was deployed(to replace an ASA) but none of the features purchased were put to good use(or at all really). Smart licensing is out of compliance now and quite frankly...
I have 2 locations with Juniper SRX 550 and needed to migrate these Juniper firewall to Cisco FTDs on HA managed by FMC. All the required configurations have been completed on the FMC. But I need to test the VPN connections between the newly configur...
Resolved! firepower 9300 Specification
Hi,As planning is to be done on the firepower 9300, I would like to check if the specification such as heat dissipation and typical power consumption may be available? Appreciate on the help for any suggestion on it :)
Hi All, I have recently started in a new comany as its senior network engineer and have inherited a mess of Access Lists on Cat 6513s / ASAs and PIXs. Some of the ACLs on the 6513 have over 1000+ lines plus each and there are loads of them, and I...
Hello <<<I have FP 2110 with ios 6.2.3 and FMC1000I do block Youtube ,on Firefox and anther browser block it But on Google Chrome block doesn't work . Is there solve for this problem?
Hi, I was contacted by a customer regarding where to find the list of all applications supported by FTD, the data sheet says around 4000 apps, I only could find the old listing for AVC on https://tools.cisco.com/security/center/avc.x , is this the ...
We had a recent event take place in which an IP address of a web site was being actively blocked by TALOS Security Intelligence as a Malware site. We created a URL Object, added to whitelist, and the site continued to be blocked by IP address. Our on...
Resolved! Firepower per VLAN DHCP Relay
As far as I know, currently it is not possible to configure per VLAN DHCP relay in Firepower, in other words, we cannot configure DHCP servers A and B for Vlan X and DHCP server C for VLAN Y.Is this feature in the product roadmap?
I have searched Cisco and online for docs showing the syntex for natting multiple hosts via command line. I can do it via ASDM, but want to know how to do it via CLI so the running-config does not show "DM_inline" making the configs look more complic...
Why this Firepower is occurring dce2_event__smb_max_reqs_exceeded? Thank You. vrian
Resolved! Segragation of User traffic via two ISP
Hi Team, I want to dedicate particular user traffic subnet (192.168.10.0/24) via 1st ISP and other User subnet (172.16.10.0/24)via 2nd ISP, load-balancing and failover is not an requirement.Currently I'm managing an FTD 2110 with FDM(On box) running ...
Hi,I would like to confirm the apt placement of IDS/IPS, whether it should be before or after firewall. I have Cisco IPS (two) which inspects packet till layer 7 which are in front of firewall and hence after inspection of traffic for malicious conte...