Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi all,
At customer site we've a HA set of 2x ASA5508-X with Firepower. The ASA has releases 9.8.3 (16) and FirePOWER 6.2.3.7 (51).The internet connection is a 100/100 Mbit connection.
When we activate the SFR module (in service policy rules), th...
Hello,
We use a high availablity set of 2 ASA5515's . Both ASA's are featured and running IPS (see screenshot) . Should an SSD be purchased for migration to firepower? What is needed for this migration?
Thanks in advance!
Hi, During migrations from the old Cisco VPN cliënt to the AnyConnect cliënt, we run sometimes in routing problems. The old VPN-client provided, after connecting a VPN (splitt tunnel configuration) the routes of a higher metric than the metric of th...
Hello everybody,At the customer site, we have a ASA5510 (ASA version 9.1.2 - ASDM 7.2.1).The problem is that there is only one particular website blocked, without any logic reason. According to the configuration we close no specific traffic. In fact...
Hi Experts! I've successfully setup two ASA5515-X (both with 5515-IPS) in active/standby mode. When the primary ASA's goes offline(failover testing) the standby ASA became active. So far so good. When I test the following situation, 70% of the time I...
Hi Nate, You can try to check "clear tunneled management" (advanced easy VPN properties).It is not clear to me, but a useful fix. Please rate or mark answered for helpful posts.
When I ping directly from the ASA interface "ts-inet" (WAN) to 8.8.8.8, everything works well. When I ping to 217.119.236.139 from the same interface it doens't work and all of the captures stays clean..
Hi,Here's the output. Is looks like the ASA doesn't route the traffic through the ts-inet.. but why.. RSB-W-ASA# sh capture capture capin type raw-data access-list asdm_cap_selector_inside interface inside [Capturing - 0 bytes] capture capout type ra...
Hi Marvin! This is the result: RSB-W-ASA# sh cap capin 12 packets captured 1: 16:19:53.285660 802.1Q vlan#99 P0 192.168.1.63.62575 > 217.119.236.139.80: S 2890204037:2890204037(0) win 8192 <mss 1460,nop,wscale 2,nop,nop,sackOK> 2: 16:19:53...