Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi, I was just wondering how you would be able to identify the source IP addresses of devices on your corporate LAN if all http traffic is going through an internal proxy server?
I have been running network discovery for over a week now and would lik...
Hi, I have been researching a little about ASA memory because of what I could see below. The fourth row down suggests a high count of over four thousand million! I thought the max would be 5684? I started looking here because my Free Memory was at 4%...
H all, I noticed that in the latest ASDM version there is a new tab titled 'Not Used'. Selecting this opens a new window with all the unused objects currently on the ASA, furthermore they are automatically ticked ready for deletion, all you have to d...
Hi guy's, is there any way to automagically refuse any Anyconnect connections to a FIPS compliant ASA if the Anyconnect client is non-FIPS compliant?Any help, thoughts or ideas are greatly appreciated as I can't seem to find anything to suggest you c...
Hi, very strange issue here ... Brief overview ..... I have one ASA with two tunnels. Each going to a different 3rd party Checkpoint firewall (site A, site B)Each site has two servers (A1, A2, B1, B2)I can only connect to A1 and B1. any connection to...
Hi, did you find a way to whitelist planned or known powershell usage?
I have a very similiar issue where some of the Wintel engineers use powershell or wmic to perform scheduled updates. I would like thses whitelisted and obviously any other power...
I was able to set updates manually via the cli
Auto Upgrade the IPS Command Line Link:
http://www.cisco.com/c/en/us/td/docs/security/ips/7-0/configuration/guide/cli/cliguide7/cli_system_images.html#wp1071851
Download Software
https://software.cis...
Oh yeah !!! you mean on the way back! Hadn't thought of that!
The way the network is setup, this is the only way we would be able to resolve this issue.
Thanks again mate, really appreciate your help!
Cheers.
Hi again Marius, thanks for your previous replies I really appreciate it! though I do have one more question
I guess the best solution in this particular scenario would be to put the Proxy in the DMZ, then the service policy on the ASA should match...