Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Join

 
Labels

Forum Posts

Hi,I'm getting dupplicate syn from our Firepower FTD. The setup is that VPN clients connect via outside (Internet) to access internal stuff. The VPN Clients get an IP from pool 10.1.1.x (for example) to access internal 10.2.2.x.Internet also needs to...

D Le Wando by Level 1
  • 1667 Views
  • 16 replies
  • 0 Helpful votes

Resolved! Internet breakout

Hello guys,I recently built a DMVPN tunnel from a spoke to hub  but when I can’t ping Google unless I put access-list ip any any under the outside interface on the firewall. When I take the acl off ever goes down, when put the acl back on everything ...

SS2020 by Level 1
  • 1113 Views
  • 9 replies
  • 0 Helpful votes

Hi all, is there any detailed documentation for FMC REST API GET call /api/fmc_config/v1/domain/{domainUUID}/health/metrics which can get health statistics? The documentation mentions metric -- "name of the prometheus metric to be queried" however, t...

i need to block access to my RA VPN using the IP i need this VPN to be accessed via the URL what i mean that i have an FTD 2110 with RA VPNusers can access the Web page of the VPN using both IP of the outside interface and the URL i need to force use...

Nadi by Level 1
  • 900 Views
  • 7 replies
  • 0 Helpful votes

Hi guys,   I found the configuration of a ASA 5525 strange to me. I can't understand why there's Permit ip any any at the end of ACL, as follows:   access-list DMZ_access_in extended permit tcp object SRV_SYSLOG eq 6514 object SRV_MC eq 6514 access-l...

h.dam by Level 1
  • 3624 Views
  • 6 replies
  • 0 Helpful votes

Hello, sorry if this has been asked before but it has become more difficult to find information lately.  My Firepower 1010 appliance is using FTD 7.2.8 which is listed as the suggested release.  I have the Threat license installed.  It is a standalon...

EvanC75 by Level 1
  • 3328 Views
  • 2 replies
  • 0 Helpful votes

The 2140s are managed by FMC.In my ACPs, I have a policy for blocking. In this policy, the main components it is blocking are URLs. We have all the default groups that should be blocked. And we also have a custom list of URLs that we block to. This l...

net_ad by Level 1
  • 3405 Views
  • 15 replies
  • 1 Helpful votes

Hi,I received help from @Rob Ingram  yday regarding ASDM upgrade. Which was a tremendous success, thank you ...!However, today, after I did all that, I had to revert back to a previous ASDM version to work with certain computers on out network. Now I...

Ced W by Level 1
  • 1150 Views
  • 8 replies
  • 0 Helpful votes

Hi Team.I have a host on LAN that is trying to build IPSEC VPN with remote site.I am using Dynamic PAT for all traffic.I believe it should work.But interestingly, I see all traffic getting NAT but not UDP 500.Any idea why? Ideally i want UDP 500 and ...

ahmad82pkn by Level 3
  • 2563 Views
  • 17 replies
  • 0 Helpful votes

ASA Version: 9.6(4)41ASDM Version: 7.15(1)150  There’s are few enquiries about ASA5545-X Firewall1.           Does ASA support wildcard mask?2.           Does ASA firewall support FQDN?               Any limitation? Any KB related to above queries? 

Review Cisco Networking for a $25 gift card