Questions tagged [cisco-asa]

The Cisco ASA (Adaptive Security Appliance) series of products provide Firewall and VPN functionality.

The Cisco ASA (Adaptive Security Appliance) series of products provide Firewall and VPN functionality as standard. This is Cisco's replacement line for the PIX range, but has additional functionality, mostly related to security, through additional modules.

772 questions
0
votes
2 answers

Configuring Cisco ASA to access internal websites with different domains

I can access www.foo.com because my AD domain is foo.com and the webserver's name on the domain is www. I want to access www.bar.com and www.bar-foo.us and whatever alter ego my webserver wants (all on same web server). Everything is accessible…
Peter Turner
  • 2,178
  • 9
  • 33
  • 45
0
votes
2 answers

Configuring CiscoASA5505 VPN direct network connection

We have a ciscoasa 5505 that has the security+ license. I need to setup VPN so that people can connect to our internal domain when they are out on the road. I was thinkign there was a way for them to connect directly to the cisco. Is this done…
Lbaker101
  • 309
  • 2
  • 8
  • 18
0
votes
1 answer

Proxy setup for ASA

I need to publish 2 sites through a proxy from the internet to my secure network behind the asa. In an ISA you would just create a proxy and go on your way. However I have asa 5510's and don't see anything similar. One site is a RSA self-service…
ChrisMuench
  • 136
  • 1
  • 5
0
votes
1 answer

Setting up a simple QoS priority flag for VoIP traffic on a Cisco ASA 5505 device through ASDM

I am trying to set up a simplistic QoS policy on our ASA 5505 device. I cannot get the thing to work for the life of me. Basically we want to make sure that all outbound VoIP traffic is prioritized above all other traffic. FYI our PBX box is outside…
tacos_tacos_tacos
  • 3,250
  • 18
  • 63
  • 100
0
votes
1 answer

Apache Timeout/KeepAlive

I run several apache web servers on CentOS 5.x and they all seem to have the same problem. It is typically fast but at times the browser will just sit there waiting forever and it never fails or goes through. Typically if you open a new tab and try…
0
votes
1 answer

ASA A/S with CSC Module requirements?

Possible Duplicate: Can you help me with my software licensing question? Last weekend we tryed to cluster two ASA5510 in an active / Standby szenario. Unfortunatelly it failed, because one ASA has an CSC ASA-SSM-CSC-10-K9= (+ Secplus and 250user…
sam
  • 155
  • 2
  • 5
  • 17
0
votes
1 answer

Cisco AnyConnect or IPSec user/ip authentication restriction

I'm trying to restrict some users from authenticating and accessing the VPN from home. I have a Cisco ASA5505, they use AnyConnect or IPSec, and I only want them to gain access to the VPN when they're at the office. I can't block everything and…
Alex
  • 1
  • 1
0
votes
1 answer

Improving horrible ASA 5505 - Checkpoint and 5505 -5510 Site to Site VPN Uptime

How can I improve my site to site VPN uptime coming from an ASA 5505 to both Checkpoint safe@office and ASA 5510. The uptime nbetween the 5505-Checkpoint is really bad, like <10 min on average. I haven't had a lot of luck scouring Google and this…
tacos_tacos_tacos
  • 3,250
  • 18
  • 63
  • 100
0
votes
1 answer

How to NAT a 192.168.x.x corporate domain on a Cisco ASA to not conlict with VPN remote users LANs

I'd successfully configured an IPSEC VPN as per this question:- How to disable dns doctoring for IPSEC VPN connections for ASA 5510 However I ran into the problem that remote users are often on a home network on the 192.168.x.x range and therefore…
gilesw
  • 123
  • 1
  • 1
  • 6
0
votes
1 answer

VPN from ASA5505-Checkpoint failing after one hour

I have an IPsec site-site VPN set up and working, however I'm having problems once the connection has been established for over an hour. After an hour ASDM still thinks the VPN is connected and the connection duration continues to increment, however…
James
  • 325
  • 2
  • 11
  • 22
0
votes
1 answer

Using ASA 5505 Port Forwarding To Route Traffic to X Machines

I have been asked to configure our ASA 5505 to route traffic from one external IP (let's call it 208.X) to an arbitrary number of internal static IPs. I was told to consider port forwarding/mapping. Given that I am still more or less clueless about…
spamguy
  • 107
  • 1
  • 7
0
votes
1 answer

Basic ASA 5505/DHCP/Routing Help

I have been given the task of bringing multiple development servers currently living a mile away in-house and configuring the network to accommodate them. I've done little more than stick jack A into port B up to now, so I'm feeling a little lost. I…
spamguy
  • 107
  • 1
  • 7
0
votes
1 answer

VPN Client not able to access a certain subnet

Client connect to ASA5510 via cisco VPN client. Access to 192.168.0.x subnet works fine, just can't get to 192.168.13.x. I can get there from the ASA fine just not via a VPN connection. The connection should go like such VPN Client -> 192.168.0.10…
evolvd
  • 1,384
  • 6
  • 33
  • 58
0
votes
1 answer

debugging ASA firewall rules (with or without ASDM)

Is there any way to debug ASA firewall rule application? I have created 2 simple access rules: allow any ICMP and allow any UDP. The first one works, I can ping. The udp doesn't work. Running a trace (simulated packet) in ASDM shows that the…
MK.
  • 292
  • 1
  • 4
  • 13
0
votes
1 answer

Can you add privilege level command to allow a certain user to add new users for an ASA?

I thought I could get this done by doing the following: privilege cmd level 6 mode exec command user But under a user with that priv level the user can only do the following user newuser They can't assign a password and priv level. Maybe there is…
evolvd
  • 1,384
  • 6
  • 33
  • 58