Questions tagged [cisco-asa]

The Cisco ASA (Adaptive Security Appliance) series of products provide Firewall and VPN functionality.

The Cisco ASA (Adaptive Security Appliance) series of products provide Firewall and VPN functionality as standard. This is Cisco's replacement line for the PIX range, but has additional functionality, mostly related to security, through additional modules.

772 questions
0
votes
2 answers

Loss of inbound emails from external domains after replacing firewall with new ASA5510

To start, I'd just like to admit my lack of knowledge in setting up/maintaining critical hardware like firewalls and exchange servers. I am the Technology Coordinator for a small charter school and came into this position about 6 months ago, where,…
Brady
  • 1
0
votes
1 answer

Public subnet configuration on a Cisco ASA 5520

I'm trying to set up a Cisco ASA 5520 as the main entry point for our datacenter setup. This setup includes: Three private networks (management, SAN and backup) that are used in a cloud server configuration One publicly accessible /26 subnet, both…
Remco Overdijk
  • 147
  • 1
  • 8
0
votes
1 answer

Cisco 5505 VPN RDP not working

I am in dire straights over here. We just changed our LAN from a 192.168.1.0 to a 172.16.4.0. We run Active Directory in our environment and our gateway is a Cisco 5505 ASA. Since the change, our clients can VPN in and make a connection but cannot…
0
votes
1 answer

Traffic Meter Cisco ASA / Internet Bandwitdh Meter

Traffic Meter graph(on Welcome screeen) on Cisco ASA 6.1 counts the bandwitdch for 5 minutes. Can i get a outside usage report/graph for 2 weeks? If it is not possible, do you know any application for testing internet bandwidth usage for whole…
e2e2
  • 3
  • 4
0
votes
2 answers

AnyConnect SSL VPN split tunneling for a single website?

We have a Cisco ASA 5510. We use split tunneling for AnyConnect SSL VPN clients. All internal addresses are tunnelled. Everything else is routed through the client's own internet connection. We use a SaaS service that only responds to requests when…
Daniel Lucas
  • 1,192
  • 1
  • 14
  • 25
0
votes
1 answer

server 2008 R2 and asa5505. DHCP through DMZ

I'm trying to configure our network to separate it through DMZ. Basically allowing full access from each network to the servers but blocking access from these networks communicating with each other’s. The way I have it setup: Servers -…
LbakerIT
  • 67
  • 1
  • 8
0
votes
3 answers

How to test fail over VPN between ASAs without disabling the main connection?

I have a fail over VPN set up between two ASA in case the p2p connection drops. I'm trying to find a way to test this with out dropping the p2p. Any ideas on this? I can't generate any interesting traffic as it just gets routed out the p2p link…
evolvd
  • 1,384
  • 6
  • 33
  • 58
0
votes
1 answer

How to block DNS request from inside host with ASA 5505

This seemed simple enough but I have to be missing something. I have the following config to block all DNS request from the inside that are not going to the allowed external DNS server. access-list INSIDE-ACCESS-OUT extended permit udp any object…
evolvd
  • 1,384
  • 6
  • 33
  • 58
0
votes
1 answer

Inconsistent RDP port forwarding

Recently, our Port forwarding for RDP seemed to stop working. Checking the firewall (Cisco ASA551), I can see the the NAT and access rules are configured correctly. In trying to connect from WIN7 to either a WIN7 or WINXP host, the firewall logs…
0
votes
2 answers

ASA 5505 8.4 open port from outside to web server

I have set up a web server on a separate VLAN and configured an object for the webserver to allow tcp port 80 communication, the access list and access group is also set up. But I can't reach the server from outside. I have been googling and…
rzetterberg
  • 137
  • 3
  • 11
0
votes
1 answer

Cisco asa 5505 to use internal DNS server

I have just installed and configured a ASA 5505 firewall (basic license) which has 3 VLANs (outside, trusted, untrusted) and the configuration is really basic. Outside is for internet, trusted is for LAN computers, untrusted is for Wifi. We have…
rzetterberg
  • 137
  • 3
  • 11
0
votes
1 answer

What sort of network problems can a single NIC host cause?

A remote office has a Cisco ASA 5505 connecting the LAN to our HQ LAN via VPN. When a particular Windows XP PC is connected to the ASA via a switch, the VPN tunnel drops, and after a short while, all connections through the ASA stop working. …
dunxd
  • 9,632
  • 22
  • 81
  • 118
0
votes
1 answer

ASA IPSec tunnel up, but logging errors?

I am getting the following errors on an ASA; Jan 24 2012 17:15:13 ASA1 : %ASA-7-714003: IP = 1.2.3.4, IKE Responder starting QM: msg id = 5293ff7c Jan 24 2012 17:15:13 ASA1 : %ASA-7-713236: IP = 1.2.3.4, IKE_DECODE RECEIVED Message (msgid=5293ff7c)…
jwbensley
  • 4,202
  • 11
  • 58
  • 90
0
votes
1 answer

DHCP Not Working Issue - Cisco ASA 5520

I have abit of an odd problem and a rather complex odd network however im going to make it as simple as possible just incase this is an easy fix. I have two IP Ranges in our network 192.168.0.0 for servers (statically assigned) 10.0.0.0 for client…
Kristiaan
  • 442
  • 1
  • 9
  • 22
0
votes
1 answer

Is this the proper way to set up VPN tunnels for this network topology?

Below is the network topology I will be working with. The left just shows that all sites have a single internet connection. The right shows how I would be setting up the VPN tunnels. The main concern for these sites is that if the internet…
evolvd
  • 1,384
  • 6
  • 33
  • 58