Security

Explore the security forums and share your expertise about firewalls, email and web security, Identity Service Engine, VPN, AnyConnect, Duo, Umbrella, Secure Access and more.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

watch here Journey banner_2

Browse the Community

Network Access Control

Cisco Identity Services Engine (ISE), Cisco Access Manager (CAM), Zero Trust Workplace

33552 Posts

Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Ada...

72399 Posts

Duo Security

Get started with or get better at administering and using Duo by interacting with peers and experts!

3562 Posts

OpenDNS

Ask questions not covered by support articles and documentation.

3527 Posts

Activity in Security

unravelling FTD DNS settings and configuration

 I currently have an FTD that has public DNS configured on the management interface (>show network, >show DNS system have Umbrella IPs).  I have internal DNS IPs assigned to inside data interface using the platform policy.  I did not check enable DNS...

tato386 by Level 6
  • 199 Views
  • 5 replies
  • 0 Helpful votes

Anyconnect VPN server certificate error

We have an ASA that we use just for our VPN and we use Cisco DUO on it for MFA. This is all setup and working for our Windows users, but once I upgraded the Cisco Secure client version to 5.1.14.145, it broke for our couple of MacOS users. If I switc...

ISE Upgrade Incident Summary

ISE Upgrade Incident SummaryOverview: ISE 1 and ISE 2 were upgraded from version 3.3 to 3.4. The upgrade did not go smoothly because the upgrade on ISE 2 failed partway through.Timeline and ObservationsPre-upgrade: The bonded interface for Gi0 was do...

ASDM privileges via ISE cisco

Hello,I would like to grant an administrator read-only access limited to Access Rules, NAT Rules, and Objects via ASDM.I have already configured TACACS+ authentication and authorization using Cisco ISE, however I’m struggling to identify the exact sh...

0-Day in ESA/SMA CVE-2025-20393

Good afternoon. Cisco published a severity 10 CVE today for ESA and SMA.   This only applies if the Spam Quarantine is exposed to the internet. https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sma-attack-N9bf4 Ba...

Resolved! Need help assessing my level of vulnerability to CVE-2025-20393

I am looking for instructions to confirm my level of vulnerability to CVE-2025-20393.  Online they keep telling me to go to Network>IP Interfaces.  However, I don't see IP Interfaces under Network on either my ESA nor SMA.  I know we are using a spam...

mibusch by Level 1
  • 1093 Views
  • 8 replies
  • 0 Helpful votes

Resolved! CSCws36549 - Reports About Cyberattacks Against Cisco ESA and SMA

Hi @ all,  I am a bit confused, as "https://bst.cloudapps.cisco.com/bugsearch/bug/CSCws36549" ( Last Modified Jan 05, 2026) states following Known Affected Releases:16.0.1-01016.0.0-19515.5.1-02415.0.0-012 , while "https://sec.cloudapps.cisco.com/sec...

jutta w by Level 1
  • 943 Views
  • 5 replies
  • 0 Helpful votes