Security

Explore the security forums and share your expertise about firewalls, email and web security, Identity Service Engine, VPN, AnyConnect, Duo, Umbrella, Secure Access and more.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

watch here Journey banner_2

Browse the Community

Network Access Control

Cisco Identity Services Engine (ISE), Cisco Access Manager (CAM), Zero Trust Workplace

33552 Posts

Network Security

Engage with peers and experts on network security topics such as Secure Firewall Threat Defense, Ada...

72399 Posts

Duo Security

Get started with or get better at administering and using Duo by interacting with peers and experts!

3562 Posts

OpenDNS

Ask questions not covered by support articles and documentation.

3527 Posts

Activity in Security

ISE Upgrade Incident Summary

ISE Upgrade Incident SummaryOverview: ISE 1 and ISE 2 were upgraded from version 3.3 to 3.4. The upgrade did not go smoothly because the upgrade on ISE 2 failed partway through.Timeline and ObservationsPre-upgrade: The bonded interface for Gi0 was do...

Anyconnect VPN server certificate error

We have an ASA that we use just for our VPN and we use Cisco DUO on it for MFA. This is all setup and working for our Windows users, but once I upgraded the Cisco Secure client version to 5.1.14.145, it broke for our couple of MacOS users. If I switc...

ASDM privileges via ISE cisco

Hello,I would like to grant an administrator read-only access limited to Access Rules, NAT Rules, and Objects via ASDM.I have already configured TACACS+ authentication and authorization using Cisco ISE, however I’m struggling to identify the exact sh...

0-Day in ESA/SMA CVE-2025-20393

Good afternoon. Cisco published a severity 10 CVE today for ESA and SMA.   This only applies if the Spam Quarantine is exposed to the internet. https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sma-attack-N9bf4 Ba...

Resolved! Need help assessing my level of vulnerability to CVE-2025-20393

I am looking for instructions to confirm my level of vulnerability to CVE-2025-20393.  Online they keep telling me to go to Network>IP Interfaces.  However, I don't see IP Interfaces under Network on either my ESA nor SMA.  I know we are using a spam...

mibusch by Level 1
  • 1089 Views
  • 8 replies
  • 0 Helpful votes

Resolved! CSCws36549 - Reports About Cyberattacks Against Cisco ESA and SMA

Hi @ all,  I am a bit confused, as "https://bst.cloudapps.cisco.com/bugsearch/bug/CSCws36549" ( Last Modified Jan 05, 2026) states following Known Affected Releases:16.0.1-01016.0.0-19515.5.1-02415.0.0-012 , while "https://sec.cloudapps.cisco.com/sec...

jutta w by Level 1
  • 937 Views
  • 5 replies
  • 0 Helpful votes

Cisco FlexVPN anyconnect VA MTU change

Hello ,I configured FlexVPN IKEv2 Remote Access VPN as guided herehttps://www.cisco.com/c/en/us/support/docs/security/flexvpn/200555-FlexVPN-AnyConnect-IKEv2-Remote-Access.html#toc-hId-936641904I started to notice I have issue loading the webpages su...

Resolved! Tunnel to Palo Alto keeps going down

Verified configurations in the Palo Alto. The router has the crypto-map, transform-set, and keyring. I keep seeing syslog messages stating %CRYPTO-4-RECVD_PKT_INV_SPI from the source of the tunnel that keeps going down. The amount of time in-between ...

Kmshae1 by Level 1
  • 3571 Views
  • 17 replies
  • 0 Helpful votes