Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
We're considering going to a Certificate + AAA method of authenticating our VPN AnyConnect clients. This is in response to hackers attempting to brute force their way into our network. It's a nuisance because they guess some of the account names corr...
Apologies for this being a rather lengthy setup preceding the question at the bottom. It pertains to the above topology. Router R1 has three 802.1q sub-interfaces on Gig0/0 with the following addresses:G0/0.10 - 192.168.10.1/24G0/0.90 - 192.168.90.1/...
We're considering getting a FirePOWER module for our ASA 5516-X. We'd like to use it primarily for Geo-Blocking. Can this be done from ASDM, without the Firewall Management Center? Also, are their limitations to using ASDM to manage FirePower, versus...
I'm having trouble adding a Checkpoint firewall to ISE 2.4. I've been following a blog where the author claims to have successfully added it to ISE 2.1, (here http://mdtnets.blogspot.com/2016/07/checkpoint-gaia-radius-authentication.html).
In the p...
We have contact center agents who will be logging into Cisco Agent Desktop while connected to their physical phones will work, and then will be using Cisco IP Communicator from another laptop at home with a USB headset. As I understand it, only one p...
Thanks, that's correct, I'm using IOSvL2 in GNS3. Are you asserting that in a real world scenario, if SW2 and SW4 were both say 3850's or 4500's, I would only need `vlan dot1q tag native` on the SW2 with the `switchport mode dot1q-tunnel` command on ...