Security

Explore the security forums and share your expertise about firewalls, email and web security, Identity Service Engine, VPN, AnyConnect, Duo, Umbrella, Secure Access and more.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Navigation banner_4

Browse the Community

Network Access Control

Cisco Identity Services Engine (ISE), Cisco Access Manager (CAM), Zero Trust Workplace

33718 Posts

Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Ada...

72627 Posts

Duo Security

Get started with or get better at administering and using Duo by interacting with peers and experts!

3635 Posts

OpenDNS

Ask questions not covered by support articles and documentation.

3593 Posts

Activity in Security

Secure Client 5 for iOS URI handler problems

Hello,We have been using Clientless SSL VPN access on Apple iOS devices from our internal portal for many years without any problems. The connection is made VIA a URI (eg. anyconnect:[//]connect[/]?[name=Description|host=ServerAddress] [&Parameter1=V...

aswit by Frequent Visitor
  • 0 Views
  • 0 replies
  • 0 Helpful votes

Resolved! ASDM 7-6-1 Font Size too small

Hi Everyone Wondering if someone can help here as I'm running out of ideas! I have a few ASA's that we monitor using the ASDM console (version 7-6-1). We recently changed our monitoring machine with a new one, OS is still windows 10 and we installed...

kjawaid01 by Community Member
  • 24564 Views
  • 14 replies
  • 0 Helpful votes

ASA Site-to-Site VPN Wizard Demonstration

This video has been deleted This video walks through the updated Site-to-Site IPsec VPN Wizard available within ASDM. The workflow has now been simplified and reduces the need for protocol specific knowledge.

Jay Young by Cisco Employee
  • 197544 Views
  • 29 replies
  • 14 Helpful votes

Automating Cisco AnyConnect VPN Session Termination from Azure

Hello Cisco Community,I am currently researching a SOC automation use case and would appreciate guidance from the community.Our goal is to automatically contain compromised user accounts identified by Microsoft Sentinel. Today, when a user is determi...

NAC bypass with Basilisk - Automatic Ethernet Ghosting

Hello,Some tools like Basilisk can permit attacker to bypass NAC (event EAP-TLS)Basilisk - Automatic Ethernet Ghosting – Ringtail SecurityIs there a way to detect these type of device on the network and block them with ISE or directly with the switch...

REJR77 by Level 5
  • 68 Views
  • 1 replies
  • 0 Helpful votes

Resolved! Plugable with ISE

We use Cisco Identity Services Engine for MAC Filtering on our switches, and one issue that has come up are devices that use the Plugable Docking Stations. With these docking stations, they do not forward the MAC address of the machine's Ethernet Int...

jmorton1 by Level 3
  • 311 Views
  • 5 replies
  • 0 Helpful votes

Resolved! Cisco ISE 3.4 Ports for Elastic Search

Hello all,Upon checking on the Admin guides for 3.4 and 3.5, I can no longer find port 9300 which is used for Elastic Search. However, from the CLI for a 3.4 node I can see the following:ISE PROCESS NAME STATE PROCESS ID -----------------------------...

t710 by Community Member
  • 278 Views
  • 2 replies
  • 1 Helpful votes

Family Shield not blocking porn

Hello Forum,I have a Unifi Network with a Pi-Hole with fixed IP address set as DNS Server. The Pi-Hole has the Cisco Family Shield as Upstream DNS Server. My four IP-addresses are:208.67.222.123208.67.220.1230:0:0:0:0:ffff:d043:de7b0:0:0:0:0:ffff:d04...

LeoS_1-1781036949149.png
LeoS by Community Member
  • 150 Views
  • 2 replies
  • 0 Helpful votes

DUO v5

Hi,We recently updated workstations from v4 to v5 and before updates were applied, a user would receive a push on their cell phones but now DUO prompting for PIN #.  Also, the authentication screen had a box to "remember me for 12 hours" and that box...