Security

Explore the security forums and share your expertise about firewalls, email and web security, Identity Service Engine, VPN, AnyConnect, Duo, Secure Access and more.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Browse the Community

Network Access Control

Cisco Access Control Server (ACS), Identity Services Engine (ISE), Zero Trust Workplace

32741 Posts

Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.

71526 Posts

Duo Security

Get started with or get better at administering and using Duo by interacting with peers and experts!

3392 Posts

OpenDNS

Ask questions not covered by support articles and documentation.

3460 Posts

Activity in Security

Resolved! FTD CLI SSH Debugging

Hi,   I am trying to get some debugging done on my FTD via SSH, but it does not seem to work. Does FTD support debugging if done via SSH and issued under#system support diagnostic-cli || or do you have to use a console cable to see debug output?   Us...

alex_aasen by Level 1
  • 35367 Views
  • 10 replies
  • 0 Helpful votes

Resolved! Cisco Ise using default policy

HelloI have implemented some policies on Cisco ISE but it is using default policies instead of the ones i configured.Can i please get help on it.I have attached the the image below

cisco ise.png
Tutu by Level 1
  • 23416 Views
  • 22 replies
  • 0 Helpful votes

DNS services coming to Jeddah, Saudi Arabia

Starting around February 17th, 2025 DNS services will be available on two separate sets of anycast IPs in Jeddah.  Global anycast IPs: 208.67.222.222 and 208.67.220.220Saudi Arabia alternate anycast IPs: 146.112.70.70 and 146.112.71.71 Which IPs sho...

adamwin by Cisco Employee
  • 40 Views
  • 0 replies
  • 0 Helpful votes

Resolved! Allowing Traffic through ASA without NAT

Hi!I have around 20 local networks. Im posting a basic topology with only 4 networks. Each server represents a network.Everything internally is working fine. Nothing will be going out to the internet. This is all within house. Now there is aclient th...

Screenshot 2025-02-04 102246.png
mcast999 by Community Member
  • 166 Views
  • 14 replies
  • 0 Helpful votes

Resolved! How to add SHA 256 NTP Authentication key.

Hello Pros, we have 5 2960x, ,  with the latest STIG released on last Wednesday.  we need to update the NTP authentication to now use SHA-256.      The current IOS is running is C2960X-UNIVERSALK9-M  I was trying to add  (config)#ntp authentication-k...

Resolved! Cisco ASA 5512-X ""Lua runtime: not enough memory"

Good day everyone.Yesterday, I was working on a Cisco ASA 5512-X Firewall that was being used as a VPN Firewall when suddenly I was disconnected from the ASDM. My SSH session from Putty was closed, and I am unable to get back into any of them. I took...

AnyConnect client and custom attribute BypassVirtualSubnetsOnlyV4

Hi,I'm trying to get the workaround described in the chapter "Connectivity Issues with VM-based Subsystems" from the AnyConnect admin guide to work.https://www.cisco.com/c/en/us/td/docs/security/vpn_client/anyconnect/Cisco-Secure-Client-5/admin/guide...

No connection after configuring VPN into my topology

My topology contains 3 branches (Clusters) each cluster representing full working network, 2 ISP routers (1 ISP for branch 1 and 2) and a BGP ring (the ISP routers connected to different routers in the BGP ring). The branches could communicate betwee...

ithanvasserman_1-1738262254668.png ithanvasserman_0-1738262094718.png

Help with ISE 3.2 API powershell scripting

Hi guys.New to this API call scripting malarky and need some assistance..  Basically im trying to change the access code on an ISE 3.2 guest portal.   I can pull the necesary varibles with the script below,  look at them,  convernt them to json etc, ...

"Couldn't send passcode"

We had an end-user recently receive the error"Duo was unable to send a passcode in a text to "Mobile" (phone number). Please try another way to login."I was unable to find a related support article or conversation for this error. There is currently a...