Security

Explore the security forums and share your expertise about firewalls, email and web security, Identity Service Engine, VPN, AnyConnect, Duo, Umbrella, Secure Access and more.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

watch here Journey banner_2

Browse the Community

Network Access Control

Cisco Identity Services Engine (ISE), Cisco Access Manager (CAM), Zero Trust Workplace

33564 Posts

Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Ada...

72411 Posts

Duo Security

Get started with or get better at administering and using Duo by interacting with peers and experts!

3566 Posts

OpenDNS

Ask questions not covered by support articles and documentation.

3530 Posts

Activity in Security

Resolved! Is there a way to find out the physical interfaces used by a port channel in FTD 4110 or 2120 through FMC gui or FTD cli or from anywhere else?

I have lately realised that there is no way to actually figure out the physical interfaces used by a port-channel in FTD 4110s or 2120s or probably any FTDs through the FMC gui or FTD cli. I asked TAC about this and they also advise there is no way t...

damode by Level 1
  • 3169 Views
  • 7 replies
  • 0 Helpful votes

clarity on Throughtput of cisco FTD 2130

as cisco firepower 2130 throughput is 10 Gbps raw and 5.4 Gbps NGFW and ISP and 760 Mbps when TLS decryption is enabled . Is this 760 Mbps is the overall throughput of the firewall when TLS decryption is enabled or non TLS traffic can pass through 5....

TCP-state-bypass on FMC managed FTD

Hi All,I'm seeing tons of %FTD-4-419002: Duplicate TCP SYN from Inside:x.x.x.x/36769 to OUTSIDE:y.y.y.y/80 with different initial sequence number on multiple FTDs where the source IP x.x.x.x is ThousandEyes Enterprise agents' IPs.I've found this doc ...

atsukane by Level 3
  • 99 Views
  • 6 replies
  • 0 Helpful votes

Send RAVPN syslogs FMC managed FTD

HI All,First of all, apologies in advance if this is an obvious question, however, I'm a bit confused how to configure syslogs for FMC managed FTDs.FMC is 7.6.2.1 and FTDs are mixture of 7.6.1.1 and 7.4.3, but in this specific case FTD2k running 7.4....

atsukane_0-1768567757955.png atsukane_1-1768567763470.png atsukane_2-1768567767788.png
atsukane by Level 3
  • 277 Views
  • 3 replies
  • 0 Helpful votes

Resolved! FTD High Availability Failover using EtherChannel

I have 2 x FTD2110 managed by an FMCv, all v6.2.2. I'm trying to create an HA pair using an EtherChannel rather than a single physical link. However, only the physical interfaces are appearing in the dialog box to create the HA pair. The documentatio...

noisey_uk by Level 1
  • 8403 Views
  • 5 replies
  • 0 Helpful votes

CSCws21678 - Zombie processes created by cscan on macOS Tahoe

Just an FYI as this one was hard to find.  All of our developers on MacOS Tahoe and the latest version of the Cisco Secure Client have the issue.### Root Cause Analysis of Spindumps 1. **Process Identification**:* The affected process is `cscan`, loc...

danshome by Level 1
  • 75 Views
  • 0 replies
  • 0 Helpful votes

Can SIA be used in a Secure Private Access environment?

In an environment where only the "Secure Private Access (SPA)" license for "Cisco Secure Access (SA)" has been purchased, can the Secure Internet Access (SIA) function be used if desired? For example, is there a mechanism in place to hide SIA-specifi...

msyk.oym by Level 1
  • 80 Views
  • 0 replies
  • 0 Helpful votes

ISE 3.2 P7–Context Visibility reset impact

Hi all,We are running Cisco ISE 3.2 Patch 7 (6 nodes, no dedicated MNT).We’re seeing an issue where not all endpoints imported via API from an external identity source are showing up in Context Visibility.Cisco documentation suggests resetting and re...

Resolved! Multiple emails for single user

Hello, I am setting up a Duo environment for our users. All of our users have 2 email addresses, formatted as follows: username@123.com and username@abc.com. Our on-prem Exchange is set up to give every account both emails as an alias for the same ac...