Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
So quick and easy question "I hope".
i have a asa configured on an internal network and I see that there's a static statement for each interface combination but it's just saying nat the ip to itself which seems to be pointless.
Are these statements ...
So I've had to take over this cisco AnyConnect running on a asa5550 9.1(7)4. I'm familiar with cisco thick client configuration but I need to understand all of the aspect of AnyConnect. Can anyone provide a quick check list of all of the point that a...
I have a site to site VPN configured on a asa5505. The tunnel is up and the interesting traffic is successfully being encrypted. The issue is that when inbound traffic originating from a subnet outside of the encrypted range destin to the subnet with...
Hello,I have a client that now requires fips-140-2 compliance. In looking at other post as well as cisco's site. I'm have trouble determining if I need to purchase a fips enclosure in conjunction with the fips labels?This document does speak to the ...
Yes it's strange. I did inherit it. A "sh nat" shows no translate_hits for any of them so I think it's safe to remove it but I have hundreds of asa's with this statement so before removing it I want to make certain I understand why it's doing.
I'm...
Did you figure this out? I just purchased three c220m3's. I'm working on the first one now. I can get to the CIMC screen and configure a static ip but can't ssh, ping or http to it?Thx,
Thanks for the reply Jouni, Yes I'm running 8.2.5 FIPS. Below is my packet tracker, notice that phase 4 appears to hit the vpn.FW-1# packet-tracer input inside tcp 1.1.1.13 1024 10.1.2.5 139Phase: 1Type: ROUTE-LOOKUPSubtype: inputResult: ALLOWConfi...