cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
251
Views
2
Helpful
2
Replies

Ldap thru asa to internal AD server?

jroy777
Level 1
Level 1

I am getting tons of attempts trying to access our ldap server on the inside network. The private IP is not accessible from the internet. Are they hammering on the webvpn interface?  How do I block these? 

jroy777_0-1725923955503.png

 

2 Replies 2

Are you using the LDAP server to authenticate access to the ASA?  If yes are you permitting access to the ASA on the outside interface (for example command ssh 0 0 outside and / or http 0 0 outside)?

--
Please remember to select a correct answer and rate helpful posts

Yes this is attack and we see for last year many same issue.

Use control ACL or shunt to drop these IP.

Note:- you can use country IP (each country uave it IP's) to block attack to asa

MHM

Review Cisco Networking for a $25 gift card