Security

Explore the security forums and share your expertise about firewalls, email and web security, Identity Service Engine, VPN, AnyConnect, Duo, Umbrella, Secure Access and more.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

watch here Journey banner_2

Browse the Community

Network Access Control

Cisco Identity Services Engine (ISE), Cisco Access Manager (CAM), Zero Trust Workplace

33559 Posts

Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Ada...

72401 Posts

Duo Security

Get started with or get better at administering and using Duo by interacting with peers and experts!

3565 Posts

OpenDNS

Ask questions not covered by support articles and documentation.

3529 Posts

Activity in Security

Subject and Destination ports in flows

Hi,How does SNA classifies source and destination IP addresses and ports for flows? I've noticed port 80 as subject port and random high ports as destination, which for me, is a typical client to server communication but the subject and peer are exch...

Add AI (Artificial Intelligence) Category to OpenDNS

This is a feature request to add a new category to OpenDNS Category Blocking. AI is something that absolutely needs to be its own category and blockable without adding individual custom domains. Thank you for your attention to this matter

Coreyvdg by Community Member
  • 99 Views
  • 0 replies
  • 0 Helpful votes

Load Sharing in Site to Site VPN using ECMP

I have FTD 3110 managed by FMC, both have version 7.6.4. The customer is using Zscaler proxy and I have created two Policy Based IPSec Tunnels. Tunnels are created on 2 sub-interfaces. So the Flow is like User >> Inside Interface >> FTD 3110 >> Outsi...

sahdogra by Level 1
  • 256 Views
  • 4 replies
  • 0 Helpful votes

ASDM privileges via ISE cisco

Hello,I would like to grant an administrator read-only access limited to Access Rules, NAT Rules, and Objects via ASDM.I have already configured TACACS+ authentication and authorization using Cisco ISE, however I’m struggling to identify the exact sh...

FlexVPN Spoke-to-Spoke Implementation with IKEv2 Routing

!! Last configuration change at 17:52:14 UTC Mon Dec 15 2025!version 15.9service timestamps debug datetime msecservice timestamps log datetime msecno service password-encryption!!! Last configuration change at 17:58:54 UTC Mon Dec 15 2025!version 15....

knanyhy011 by Level 1
  • 3262 Views
  • 38 replies
  • 0 Helpful votes

unravelling FTD DNS settings and configuration

 I currently have an FTD that has public DNS configured on the management interface (>show network, >show DNS system have Umbrella IPs).  I have internal DNS IPs assigned to inside data interface using the platform policy.  I did not check enable DNS...

tato386 by Level 6
  • 370 Views
  • 6 replies
  • 0 Helpful votes

ASAv in AWS Cloud,vpnUser traffic blocked from VPN to on-prem site

I set up an ASAv in AWS i configured an IKEv2 IPSEC VPN between is and my on-prem juniper SRX.i also set up anyconnect VPN gateway, using the same outside interface as the VPN gateway. VPN user authentication is supposed to go thru the IPSEC tunnel t...