Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi.We have a ASA 5585-x appliance, on which we are running OS version 9.9(x).Topology as per below 10.1.1.0/24 ---LAN device ---ASA--- WAN device (MPLS) --- learning non RFC 1918 prefix say for eg. 100.1.1.0/24 Requirement is to nat both the ends su...
Hi,I am having a firepower 2140 appliance which is running on ASA OS 9.x. Can I add a URL filtering capability to it. What would be the pre-requisites and licence required for the same. Note: We do not have FMC and we manage the device over CLI as of...
Hi,We have configured anyconnect vpn on our Firepower 4k firewall running on ASA OS 9.8 and we are able to connect the VPN successfuly through Cisco Anyconnect Client.We have a requirement to push the anyconnect vpn client to our customers through th...
Dear Team,I came across a scenario wherein I need to troubleshoot failover between the Primary - Standby Ready and Secondary - Active unit.When checked #sh failoverI observed a difference which is absolutely not responsible for failover, however woul...
@Rob Ingram wrote:Not sure I fully understand your last comment. Aren't you establishing a VPN tunnel to the ASA? Or NATTING to another device on the inside of the ASA. Hi @Rob Ingram I would want to establish VPN tunnel to the ASA only with NAT fro...
@Rob Ingram wrote:Hi @anant.gaggar You can only establish a VPN to the ASA using it's physical IP address. If an upstream device (router) is NATTING the public IP address to the private IP address of the ASA's outside, that will work. What won't work...
@colin.painter wrote:Sorry maybe I didn't explain sufficiently in the OP. The routers do not do any NAT - essentially forget the router's exist.The firewall has it's outside interface as a private IP. I had then configured a NAT rule on the firewall ...
Thanks. But it does not work when we try to access via HTTPS to the anyconnect VPN IP where we want to download and install Anyconnect client. Instead we observe certificate error followed by the "Internal server error" display page.I have raised a c...
Thanks Jennifer..But I think it may not be pre-requisite, coz after testing failover with different hardware revision on ASA 5540, both the asa's are observed to be working fine with proper failover.Not sure if it is having any significance or is a p...