Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I was able to set up AnyConnect VPN for phones using certificates but for added security I would like to use Certificates + Username, password. I can't find anywhere where it is documented how to make the phone ask for a user name and password. I di...
I’m designing a solution for redundancy and there are a couple of ways to accomplish this. The age old method (without EBGP) is to put an IOS router in front of the ASA that uses NAT, PBR and IP SLA to manage two internet connections with fail-over (...
I'm replacing 5 Cisco 1242 APs with 1852i using Mobility Express. Some of our SSIDs use a 256 bit key (e.g. 64 hex digits) and this is necessary these days in the age of oclHastcat and it's GPU acceleration.
The Mobility express system wants me to en...
We have a number of remote sites connected with ASA5505s and even a few old PIX501s with site to site VPN. Everything works great, routing is flawless and 7940/60s always work perfectly. The “problem” is that 7945Gs won’t register remotely. If I plug...
There is a SCCP channel driver (chan_sccp) for asterisk so I suppose that method might work.See: Guide to installing chan_sccp and SCCP Manager on FreePBX 16
We certainly considered that Philip but we have a less computer literate user community than most and it's felt that there are a lot of very weak domain passwords out there. We also have an SSID that is used for voice only (with Cisco Wifi handsets)...
I would think the Internet connection to the ASA with the jitter problem is introducing the jitter (as opposed to anything to do with your configuration). It's probably a sick circuit that works OK enough for data (so no one complains) but the timing...
It seems the best you can do for now is to Block + Reset so the user doesn't have to wait for it to time-out and gets a more immediate "page cannot be displayed".
Not suppose to be but it absolutely is. Upon much investigation (working with Cisco TAC) it appears to be due to the order of operations. Once a URL is blocked, further processing does not occur including applying the SSL policy. Actually decoding th...