Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
We currenlty run our ASA 5555X with the SF module installed. To date we have had no issues with it.
I have a requirement to block a specific inbound URL path to our ACE proxies.
For example
https://www.test.com/api/important
I would like to filter vi...
We currently have a 5508 running in prod, licensed for 50 AP's.
I also have another 5508 as a spare that I would like to setup in HA config. It is currently licensed for 25 AP's.
Can I use this as an HA secondary or does it also need to have a 50...
Okay before our SF upgrade, we had 2 ASA 5555x's in active standby mode..
I then broke the failover config and removed the standby ASA, running on Primary only.
I upgraded the 2ndary ASA to latest release and added the SFR module etc
Installed the Fi...
Just recently went live with the new Sourcefire module on our prod ASA (5555X). That has gone well
We are licensed for the malware protection service as well.
Currently there is a file policy in place to "detect" all file categories.
Would like to ...
We are about to upgrade our prod ASA5555x to use the Firepower services. I have been testing it in the labfor a few days now and all appears to be working well.Go live is this Sat eve.My question is should I run into connectivity issues etc due to SF...
Okay, the good news is I have a 6513 chassis in the lab...I'll use that to load up the image before messing around in prod.Thanks everyone for the info
Really what I am trying to figure out here is how to use BGP to solve this scenario.Each site would have its own ISP connection and public IP blockInternal addresses would be NAT'd and a firewall on each ISP connection.What I am trying to figure out...