Questions tagged [cisco-asa]

The Cisco ASA (Adaptive Security Appliance) series of products provide Firewall and VPN functionality.

The Cisco ASA (Adaptive Security Appliance) series of products provide Firewall and VPN functionality as standard. This is Cisco's replacement line for the PIX range, but has additional functionality, mostly related to security, through additional modules.

772 questions
0
votes
2 answers

Connect internal users to ASA outside interface https server

I would like internal users to be able to connect to the ASA's outside interface https server, to be able to download the AnyConnect client while in the office. Currently, this isn't working. I've setup a static NAT entry with internal sources, and…
bill
  • 11
  • 1
0
votes
2 answers

ASA 5505 VPN Passthrough - Server 2008

We have an ASA5505 and it is the backbone of our network that controls the DHCP/NAT rules/Firewall etc. We are having issues with VPN users being able to access local systems. We are able to ping IP addresses and the FQDN (server.domain.local) but…
Lbaker101
  • 309
  • 2
  • 8
  • 18
0
votes
1 answer

Server 2008 R2 VPN clients are unable to ping netbios names

I just setup the VPN yesterday. Our current setup: Internet> asa5505 (setup with the NAT rules ect to forward traffic to the VPN server)> Server 2008 R2 server> network. We have multiple DCs and AD systems. The ASA5505 is the DHCP server. People…
Lbaker101
  • 309
  • 2
  • 8
  • 18
0
votes
1 answer

ASA 5505 isolating networks per interface but keeping access to the server

We have an asa5505 and I need to figure out how to isolate one physical interface to the other but remaining with access to our servers. my original thought was to put them on the same subnet as the main network and isolate them via the feature to…
Lbaker101
  • 309
  • 2
  • 8
  • 18
0
votes
1 answer

Cisco access-list confusion

I'm having troubles implementing access-lists on my asa 5510 (8.2) in a way that makes sense for me. I have one access-list for every interface i have on the device. The access-lists are added to the interface via the access-group command. let's…
0
votes
2 answers

Will traffic get through a standby firewall if the active firewall's interface to the gateway goes down?

Here is the scenario. I have two ASA 5510's in Active/Standby. Each of them has a single uplink to one of two routers (HSRP1 and HSRP2) configured in HSRP. Disaster strikes and the interface between the Active ASA 5510 and HSRP1 goes down. Will…
Alain O'Dea
  • 645
  • 3
  • 12
  • 27
0
votes
1 answer

How to limit a VPN user to just one host?

I have a Cisco ASA that authenticates off of RADIUS / AD. I need to give a user VPN access but I want to limit their access to only one host. What is the best way to do this?
evolvd
  • 1,384
  • 6
  • 33
  • 58
0
votes
1 answer

ASA5505 isolating department

We have an ASA5505 that is our main firewall/connection between departments. Currently I need to look for a way to make so our development team can access our internal servers but they are not able to contact the rest of the network. Currently this…
Lbaker101
  • 309
  • 2
  • 8
  • 18
0
votes
1 answer

Outside or Internet users canot reach my dmz

Hi everyone out there. I have configured my aa 5520 v7. and so far im facing a problem in my connection and therefore i wish someone here can help me to sort it out. wright now Internal network can access the internet whats not working now and…
0
votes
2 answers

Cisco ASA - Configure External Access to a Server

I'm trying to configure my ASA (ASA 8.4(2), ASDM 6.4(5) ) to allow external access to a server (using RDP). I've tried everything, but it doesn't seem to be working. I'm sure it is something simple that I'm just not seeing. Here is the relevant…
ScottAdair
  • 141
  • 2
  • 9
0
votes
2 answers

asa 5510: nat and static policy, different interfaces

We have a ASA 5510 with four networks: inside, outside, dmz, WLAN. All addresses inside have nat to outside and dmz and WLAN. There exists one static policy from inside to outside for our imap-server. This server is reachable from outside. OK. From…
gln
  • 41
  • 1
  • 4
0
votes
1 answer

VPN Connection between Windows Server 2008 and a Cisco ASA

Is there a windows software VNP equivalent to OpenSwan for Linux? Requirement: Establish a secure connection with a third party provider to consume a service. Currently, I have a Linux box with OpenSwan, and I am trying to setup a vpn connection…
AJC
  • 101
  • 2
0
votes
1 answer

ASA5505 Route through another Gateway's VPN?

I have 2 routers set up in our office, one an ASA5505 and one is just a smoothwall. The smoothwall has a VPN set up to a data centre rack and users access various servers at our datacentre. I am in the process of setting up the ASA5505 on a new…
Daniel
  • 107
  • 1
  • 8
0
votes
2 answers

Cisco ASA and Exchange Email Flow (maybe a DNS issue?)

I swapped over from SonicWall to a Cisco ASA. Everything seemed to work except now some of my Exchange email gets stuck in the external queues. I get errors 421 4.4.2 Connection Dropped and 451 4.4.2 Timeout errors. But it is not all email. I…
Peter S.
  • 25
  • 2
0
votes
2 answers

ASA5505 vs server 2008 R2

We have an asa5505 and I am trying to create an IPsec VPN connection so that our users are able to connect to network when they are out of the office. They will be connecting with the vpn connection software included in windows 7. Would you guys…
Lbaker101
  • 309
  • 2
  • 8
  • 18