12-18-2007 02:28 PM - edited 03-09-2019 07:40 PM
When ever I create a network object in ASDM 6.0(3) the UI also wants to send the command 'asdm location (network object IP address)' to the device.
What is the purpose of 'asdm locaction ....'? Is it telling the ASA-5540 that the IP address is allowed to connect to the device using ASDM?
If that is the case why does 'asdm location xxx.xxx.xxx.xxx'get denerated for every network object I create?
12-18-2007 03:13 PM
Jim, PIX/ASA uses this entry to associate that host to and interface as well as with object groups entries for that matter. In other words it builds a topology within the firewall itself based on this information entries to associate it with an interface but by no means these entries would have anything to do with administration access rights to the firewall, for that you need to configure management access and instruct firewall with IP addresses that can access firewall by https, ssh, or telnet access for managing the firewall.
Rgds
Jorge
07-05-2012 01:09 PM
According to Cisco press book , "End-to-End Network Security Defense-in-Depth?(ISBN 978-1-58705-332-0)" by Omar Santor, the "asdm location" command is related to administrative access.
07-05-2012 01:10 PM
According to Cisco press book , "End-to-End Network Security Defense-in-Depth?(ISBN 978-1-58705-332-0)" by Omar Santor, the "asdm location" command is related to administrative access.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide