Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I have an issue where I believe I have everything configured properly, but my policy-map isn't matching any of the specified packets (ICMP, Telnet). Everything is being matched as class-default. Any ideas on where I went wrong, or if this is even p...
Support community,Has anyone had any luck creating a signature that fires against failed login attempts against TCP/3389? Unfortunately, since the protocol is encrypted, we are having a hard time finding anything to match against with a failed or su...
Forum,I'm working on a large deployment with multiple ASA interfaces with numerous subnets behind eash interface. The subnets are not contigous. The problem we have had in the past is that in order to traverse ASA interfaces with the NAT untouched,...
Chris,I'm just trying to get some matching for the service-policy, so currently this is a test. The team hasn't decided what IPs and what ports to prefer. I also need to work on the bandwidth allocated to each queue. Even though the link isn't satur...
Mike,To summarize the answer, yes, you are correct in your assumptions. We want to do a dynamic PAT for all hosts on the inside interface when they go out the outside interface, but no other traffic should be translated. Once I removed the nat (any,...