Hi all, here is a simplified version of a network I am designing. I have a single multilayer switch, connected to a router. Switch points to the router for it's default route. On the router I have a static route that points back to the switch for...
Good evening, from a firewall perspective, which interface does the ASA consider an Anyconnect VPN client coming in on? Here is the situation, I have allowed restricted access from INSIDE to our DMZ based on source and destination IP addresses. ...
Hi all, we have a unique one. There is an army engineering website https://nab.usace.army.mil that some of our users need to access however since we use Umbrella, they are not able to get to it. When performing NSLOOKUP against Umbrella, the abo...
Good morning, I notice each time I log into my FMC, I have a deployment task pending. Upon checking the task details, it's always the rule updates that have been downloaded but not applied to my FTD appliances. I have to manually deploy this eac...
Good evening, something very strange is happening at one of our offices and I am completely at a loss.We have a 3750g switch stack at the core, and a couple of remote closet switches that connect to the core. All endpoints and servers/printers are ...
@DMel What you are referring to is split-AAA. ASA sends for MFA Authentication to the NPS server and, if AuthC passes, then sends to ISE for Authorization piece. I have been using split-AAA for last 3-4 years however more recently started running i...
I know this is an old thread but I have another suggestion which may help someone in future. I ran into the exact same issue. Was setting up a brand new ASA but for the life of me couldn't SSH into the device. I then went under Configuration > Dev...
Thank you all for your insightful responses. I appreciate all of them. The situation I have is that I have a Layer 3 switch that forms an EIGRP relationship with a couple of Cisco routers. Routers advertise internal routes to other branch offices ...