Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I was given a new Cert that has to be installed in our 5516-x(s) (HA Pair) so do I install on both ASA's?I see the three different different trustpoints? (See image) So I just assign the cert to the interfaces (see image) and then delete expired trus...
We have a working design with Cisco ASA and Fortiswitch connecting to Cisco ASR1001 router up to AWS. The ASR uses BGP to talk to AWS and we redistribute OSPF/BGP (Which way is right?). At the moment It works and we have traffic flowing. We have intr...
Hello,Have two 3130's. Set up individually and then set them to do HA. Come to find out we are going to use SFMC. SFMC requires the HA can only be enabled AFTER the devices are connected to it. I broke HA and expected the original IP I used for the s...
I am getting tons of attempts trying to access our ldap server on the inside network. The private IP is not accessible from the internet. Are they hammering on the webvpn interface? How do I block these?
Looking to Authenticate Anyconnect users in India. No split tunneling is a requirement and so is MFA. We will use Duo. Our thought was to add a DC on their network in India, users would auth to their ASA which uses ldap to the DC we install on their ...
How do I change the management interface on a 3130 to be on the "inside" interface but before that, how do I set nameif to inside on a different interface (want to use 10G instead of 1G)?