10-31-2015 07:31 AM - edited 03-11-2019 11:49 PM
Dears,
Am having a PIM Multicast Registration Vulnerability on my cisco ASA 5520.
am not even configuring PIM and i've upgraded the IOS to the latest version and i still having the same vulnerability issue.
am using 916-10-K8.bin.
Any help?
10-31-2015 09:28 AM
Hi Alaa,
How did you found that your ASA is hitting this vulnerability as it has the condition that ASA must have multicast configuration. As you have mentioned that non of the multicast command is configured then this configuration is not valid.
You could run the below command to check if it is configured or not:
#show run multicast
#show run | in pim
If any output comes then perform 'no' in from of that command.
Also this behavior not seems to have your mentioned configuration. It is mainly for x-series ASA and all the affected version are 9.2 and above.
Please let me know if you have any queries.
Regards,
Akshay Rastogi
10-31-2015 09:52 AM
Thank you so much Akshay.
I'll use your reply as an evidence to prove that this alarm is a false postive.
BR,
Abdallah
10-31-2015 10:06 AM
Hi Abdallah,
Sure.
Please mark the answered as correct if this answers your queries.
Regards,
Akshay Rastogi
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide