Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I recently discovered that there is no option for encrypting the various passwords in the configuration of a VPN 3000 series concentrator if you choose to export the config to an XML file. However, there is such an option for the plain text version ...
I'm trying to provide virtual direct Internet access for some of our engineers via client initiated, non-encrypted L2TP tunnels from the users' Windows 2K PC's to an Internet connected IOS router so that they can provide support services from their d...
It'd be useful if Cisco would actually document the process to set the timezone via ASDM instead of just referencing a bug ID that's private, since the process is a bit convoluted if one is using NTP to set the FirePOWER time.
For the curious, it's n...
As long as you allow HTTP access on that interface you should be fine. The bigger problem is that in the new generation of ASA models (all the "-X" models) you can no longer use the Management port as a regular interface - it won't allow you to remo...
Your config is a little unusual in that you're using a single access-list globally on both your interfaces, but I can't see anything obvious that shouldn't keep it from working. The "packet-tracer" command can be exceptionally useful in situations l...
Thanks, Jay - yes that does help. I don't have direct involvement in the imaging or configuration of the corporate systems, but I'll see if I can get something done with certificates. There's a chance there's already an appropriate cert in these sy...
Jay,Thanks for the reply. I can't use certificate authentication since RADIUS w/ SecurID authentication is already mandated. I had assumed I'd need to use CSD to check for files and/or registry entries, but my main question is what sorts of things ...