Cisco Identity Services Engine (ISE), Cisco Access Manager (CAM), Zero Trust Workplace
33780 PostsEngage with peers and experts on network security topics such as Secure Firewall Threat Defense, Ada...
72685 PostsGet started with or get better at administering and using Duo by interacting with peers and experts!
3665 PostsAsk questions not covered by support articles and documentation.
3613 PostsUnify Cisco SD-WAN and Cisco SSE within the Meraki platform
82 PostsDear all, lately I have managed to make FTD to support IKEv2 tunnel from Windows 10 Native client, using only certificate authentication.However the configuration is working only with one locally created address-pool. For SSL we have 3 different Grou...
My understanding is that IPsec encryption takes place on the output interface after routing; however, there are very few resources that explain this mechanism, and I suspect that quite a few engineers mistakenly apply crypto maps to physical interfac...
The following local ID is defined in the IPsec configuration. What is its purpose? Please also explain how the system behaves if this setting is omitted.crypto ikev2 profile IKEv2_Profileidentity local key-id IKEv2_VPN
We recently implemented a pair of FW1120's with full FTD licensing. Configuring access control policies to block specific websites and URL categories.One of the categories we have blocked is "games" which does a great job of blocking those websites....
I am having trouble creating a TACACS user. We discovered that some accounts had been disabled, and I get an error when trying to re-enable them.It is not an error preventing creation; rather, the system flags this error regardless of the name the us...
I have a small number of networks using OpenDNS, each with its own per-network updater password (that is, even though three networks are all managed within my one OpenDNS login, the updater client on each network has its own unique password to update...
Hello,I hope an IPsec/IKEv2 guru will be able to enlighten me.ContextWhile not mandatory for the question, I provide a little bit of context.We use IPsec/IKEv2 tunnels to terminate mobile access of customers into their respective VRF. FlexVPN solutio...
Dear Team, Just want to confirm, we created SSID and we're using ISE as a NAC right now we would like to implement double authentication method MAC address, and Active Directory credentials Network team mentioned it is not supportable to implement b...
Hello!FMC version 7.6.5I have trouble with downloading upgrade packages via FMC UI in "Product Upgrades".After clicking the circle to retrieve available updates, it says "Contacting server" in the bottom left and after a minute or so (sometimes faste...
I try to switch vlan for an endpoint from my fortinac and if the endpoint connect to the port switch then vlan change is working, i can see the nac send the coa and cisco switch receive the coa. When the endpoint connected behind the ip phone then wh...
Hi all, I have 2x Cisco ISE nodes, both are running PAN, PSN, MnT. ISE02 are primary PAN, ISE01 are secondary PAN. We bought license: 500 Premier, 800 Advantage, 2 VM License (running virtual appliance)Devices dont have internet so need to use SLR t...
We've been using DUO for years as the primary MFA for all clients. Microsoft has repeatedly changed how we have to do this over the years, to the point where DUO is even deprecating the MS Azure Active Directory app soon because it hasn't worked pro...
Hello mates,I’ve seen this error while trying to do a posture update: “Feed cannot be generated or parsed”:We have it for two weeks now and we patched our deployment yesterday but the issue is still here. When I try a to update now, I see my proxy go...
I have a couple Firepower firewalls that run ASA image. Should I change the image to FTD? In that case should I use FMC or managing the FTD via FDM would be enough?As far as I know FMC provides more features that configuring an FTD via FDM, isn't it?...
I've been trying to setup a VPN tunnel between a FTD and Azure, but I am having some issues where one BGP neighbor is stuck in Idle/Connecting.I don't have any access to the Azure side. That part of the configuration is done by my custumer. Here is t...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
| User | Helpful Count |
|---|---|
| 66 | |
| 27 | |
| 14 | |
| 11 | |
| 4 |