Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I have a working employee SSID based on IAS authentication & Active Directory certificates on a vlan. I need to create a guest SSID & a guest vlan, which I believe I can secure based on L3 access-list. Is there a way to automatically disable the gu...
I have a PIX firewall connected to port11 on the 3524XL switch. The Windows Surfcontrol server (not ISA ver., only has 1 NIC) is connected to port16 on the same switch. The server can see all the traffic going out to the Internet & apply the polici...
I'm using Cisco client ver 3.6.3(a) & connecting to a 2621 router running, 12.2(11)T3. I can establish a VPN connection without any problems. I can connect to the internal networks while connected to VPN but I cannot browse the Internet if I have a...
We allow connections from our inside network to go out to the Internet. This is the default from high security to low security. Is it possible still to allow everything else but Gnutella port (6346 & 6347) to go out to the Internet. I think I shou...
The PIX is working fine. People can go through the web thru the PIX w/o any problems, but is it possible to make the PIX behave like a router where it would route the traffic to another device if the packets are not destined to the Internet.my route...
Hi Chris,I have got the same expiration notification on our Call Manager. I would like to renew the VeriSign_Class_3_Secure_Server_CA_-_G3 certificate. Would you please let me know where I can download it.I only found the root certificates to downloa...
Thanks, I will try the ingress command. The command I have to put in is below ?monitor session 1 source gigabitethernet0/1monitor session 1 destination interface gigabitethernet0/2 encapsulation replicate ingress I will let you know the results........
Hi. I have the same issue. I'm trying to get tsweb running via webvpn & it does not work. I tried the port forwarding thru Configuration, Tunneling & Security, WebVPN, Port Forwarding. Where do I put port 3389, Local TCP Port or Remote TCP Port ? ...
Barry,Thanks for the quick reply. It worked. What I had to do based on your suggestion was to create access-lists & apply it to the:crypto isakmp client configuration group "mygroup"acl 101access-list 101 permit ip "inside corp network1" to "ip poo...