Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello,we have branch offices, which are connected over a leased line (routed / different subnets).We want to set up a Guest-VLAN in all branches and at the central for Wireless-Access-points. This VLAN should end up in a DMZ of our central-Firewall.I...
Hello,a year before, here was a conversation about the question in which order the PIX-ACLs are applied.There where some different opinions about this.Are they applied on a first-match base like IOS-ACLs or on a best-fit base ?I remember that someone...
Hello,we have a new Cisco2600 with an E1-PRI-line.We tried to dial to a Cisco1600 with 64k-BRI.From C1600 to the C2600 the connection works fine.From C2600 to the C1600 the fist step of the call-setup is OK, but when the routers starts the LCP-phase ...
Hello,I have a IDS4215 (IOS4.1).When I start a signature update for the sensorfrom CLI or WebGui and the update fails becauseof network or ftp-server problems, then I haveto wait nearly half an hour before the sensor isready again for a retry or for ...
Hello,I'm searching for a device (maybe CSS or CE) which can redirect an MS-ISA proxy-upstream-data to twodifferent Proxy-Servers depending on the Browsing-Protocol (http or https)This is our configuration:The Browser uses MS-ISA as proxy.The ISA sen...
When I have a large rulebase and I am editing rules at the top, it may last seconds until the PDM has cleared and rewritten all the rules below.Does this have impact only to new connections ?What about existing statefull tcp-connections at this time ...
And what about NAT. Does ip tcp adjust-mss work without NAT ?Browsing the Internet over a PPPOE-DSL connection without adjusting mss is a really problem.If I have a PPPOE-DSL connection with a public-routed adress-range and I do not use NAT,or I use ...
Hello,I tried to attack our evaluation VMS-Server itself (Win2000SP4) with the exploit from 'k-otik'. The VMS-server is protected by a CSA-Agent with default settings.When I start the exploit locally and attack 127.0.0.1 then the maschine hangs or so...
I opened a case with TAC.They wrote, that they will not help me,because I have no Contract and the VPN3005is under warranty and my distributor shouldhelp me.