Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,
I have a pair of 5525x firewalls which I am thinking to configure and use for remote access VPN for mobile users. The firewalls are currently running site-to-site IPSEC VPNS without any problem.
The type of remote users we have means that clien...
Hey guys,
I have installed a wild-card certificate successfully on the ASA firewall and have assigned this to the interface of webVPN. However I am still getting invalid-cert error when I browse to the page.
https://colofw.matchesremote.com
How ...
Hey all,
I need to pick your brains on this one as I have run out of ideas and still cannot figure out why I am unable to reach new destinations.
Just recently we added a new site into our WAN estate and connectivity is over SHDS to the other end...
Hi all,Hope you can help me figure out an issue I am struggling to fix with my Firewalls. To give you and overview of what the current setup is like, I have ASAs between internet router and a Layer3 switch Internet ==ASA==Layer3Switch-LAN(multiple su...
Hi, I have a 5525 firewall in routed mode in HA configuration which was initially being used as a router (i.e. hosts gateway was firewall). There were quite a large number of issues with routing and NATTing which I have addresses but there are still...
Hi,
Thanks for your reply. Still slightly confused about how licensing works. If I buy AnyConnect plus perpetual (50 or 100) license would that give users access to the AnyConnect client ? I assume yes but then the pdf suggests that plus license is ...
Not really. I am accessing the client-less SSL by going to the Public IP address of the outside interface. There is a wildcard already installed but for some reason the root certificate is being presented.
Hi Akshay,
No Ledbury75 is a VPN site
object-group network DM_INLINE_NETWORK_23 network-object object DC_Object network-object object Head_Office_VLAN-50 network-object object Head_Office_VLAN-60 network-object object Network_VLAN-1 network-object ...
No actually that never worked for me.
show run nat
nat (INTERNET-WAN,DEFAULT) source static any any destination static repo-1.abcxremote.com-PUBLIC repo-1.abcxremote.com-PRIVATE no-proxy-arp
nat (INTERNET-WAN,DEFAULT) source static any any destinat...