Explore the security forums and share your expertise about firewalls, email and web security, Identity Service Engine, VPN, AnyConnect, Duo, Secure Access and more.
Hi, I am trying to get some debugging done on my FTD via SSH, but it does not seem to work. Does FTD support debugging if done via SSH and issued under#system support diagnostic-cli || or do you have to use a console cable to see debug output? Us...
HelloI have implemented some policies on Cisco ISE but it is using default policies instead of the ones i configured.Can i please get help on it.I have attached the the image below
Starting around February 17th, 2025 DNS services will be available on two separate sets of anycast IPs in Jeddah. Global anycast IPs: 208.67.222.222 and 208.67.220.220Saudi Arabia alternate anycast IPs: 146.112.70.70 and 146.112.71.71 Which IPs sho...
Hi!I have around 20 local networks. Im posting a basic topology with only 4 networks. Each server represents a network.Everything internally is working fine. Nothing will be going out to the internet. This is all within house. Now there is aclient th...
Hello Pros, we have 5 2960x, , with the latest STIG released on last Wednesday. we need to update the NTP authentication to now use SHA-256. The current IOS is running is C2960X-UNIVERSALK9-M I was trying to add (config)#ntp authentication-k...
Good day everyone.Yesterday, I was working on a Cisco ASA 5512-X Firewall that was being used as a VPN Firewall when suddenly I was disconnected from the ASDM. My SSH session from Putty was closed, and I am unable to get back into any of them. I took...
Hi,I'm trying to get the workaround described in the chapter "Connectivity Issues with VM-based Subsystems" from the AnyConnect admin guide to work.https://www.cisco.com/c/en/us/td/docs/security/vpn_client/anyconnect/Cisco-Secure-Client-5/admin/guide...
SymptomsI had incredible difficulty locating details and even vendor support surrounding setting up Azure SSO to service anyconnect connectivity with multiple tunnel groups. So thought I'd potentially help by documenting the fixDiagnosisAfter followi...
My topology contains 3 branches (Clusters) each cluster representing full working network, 2 ISP routers (1 ISP for branch 1 and 2) and a BGP ring (the ISP routers connected to different routers in the BGP ring). The branches could communicate betwee...
We are currently using ISE-PIC and WMI integration with Windows AD for user/IP mapping and it works fairly well with domain joined wired desktops. We now want users to use their domain creds with wireless devices and will implement Microsoft NPS for ...
The Cisco Secure Firewall comes with a default Network Discovery Policy which is configured for 0.0.0.0 discovering applications. I'm commonly seeing some people doing 2 configurations: - Edit default Network Discovery Rule: . Delete 0.0.0.0 and put ...
We are pleased to announce that Cisco Secure Access now officially supports Resource Connectors in VMware vSphere 8.0. This enhancement ensures that you can seamlessly deploy your Resource Connectors (RCs) to the latest vSphere environment, aligning...
Cybersecurity Threats Join us for an exclusive webinar that explores the tactics of modern hackers, showcasing real-world cyberattacks alongside the powerful defenses offered by Cisco Security solutions. All the above will be accompanied by demonstr...
Hi guys.New to this API call scripting malarky and need some assistance.. Basically im trying to change the access code on an ISE 3.2 guest portal. I can pull the necesary varibles with the script below, look at them, convernt them to json etc, ...
We had an end-user recently receive the error"Duo was unable to send a passcode in a text to "Mobile" (phone number). Please try another way to login."I was unable to find a related support article or conversation for this error. There is currently a...