Questions tagged [cisco-asa]

The Cisco ASA (Adaptive Security Appliance) series of products provide Firewall and VPN functionality.

The Cisco ASA (Adaptive Security Appliance) series of products provide Firewall and VPN functionality as standard. This is Cisco's replacement line for the PIX range, but has additional functionality, mostly related to security, through additional modules.

772 questions
0
votes
4 answers

Cisco ASDM configuration tool crashes connecting to Cisco ASA 5510

I'm trying to configure my Cisco ASA 5510 series firewall with the Java-based ASDM tool (version 6.1), but the tool crashes while connecting. I enter my credentials and it accepts them, downloads some kind of "update" from the firewall, and then…
Mr. Jefferson
  • 697
  • 2
  • 11
  • 25
0
votes
1 answer

Cisco ASA failover with single connection

I would like to setup two Cisco ASA firewalls in a failover configuration. However, my ISP gives me a single address and ethernet port on their CPE device. I am assuming that I would then need to put some sort of network HUB (not a switch) between…
Brian
  • 1,233
  • 2
  • 14
  • 25
0
votes
2 answers

Taking stock of an existing ASA Firewall

Imagine you are given an existing network using an ASA firewall. The network works, but you aren't sure of anything else. The firewall may be completely improperly configured, with "outside" actually being inside and "inside" actually being outside,…
Nate
  • 151
  • 2
  • 7
0
votes
2 answers

Cisco ASA 5520 configuration on two SITE, A and B

I am a network admin at a company. So my company has Two SITE, A and B, and we are using internet from our ISP of 4 MB via optical fiber. My IP are; 10.1.5.x with a subnet mask os 255.255.252.0 I'm using a Cisco Router 2800 series for the internet…
Big Denzel
  • 11
  • 1
  • 7
0
votes
2 answers

Changing ASA access lists on the fly

I'm shortly going to be in a situation where I'll need to be updating a firewall on the fly. How does one update cisco ASA access lists on the fly? For example, if I start with: access-list outside_in extended ip deny any any access-list outside_in…
Nate
  • 151
  • 2
  • 7
0
votes
1 answer

Cisco ASA: How to free memory without reboot?

How can I free up some memory in our Cisco ASA 5510 without rebooting it? We urgently need to free memory otherwise it will crash, but we can't reboot it in the next 2 days.
Andre
  • 1,341
  • 4
  • 19
  • 34
0
votes
1 answer

Cisco Asa 5505 RDP problem with VPN connection

I have a problem with my Cisco Asa 5505. My computer is connected to a Cisco ASA 5505 and I connect to via VPN to another Cisco ASA 5505.Everything works fine, but I can not use RDP to computers in the second network. It seems that my Cisco will…
0
votes
1 answer

ASA 5505 can't add it to switch with VLAN

I have an ASA 5505 and a Cisco switch. I am trying to hook them up together. The ASA has an IP of 10.11.2.5. Servers on the VLAN 1102 on the switch has a default gateway of 10.11.2.1. I do a show vlan command on the switch, the port gi1/16 shows up…
IT_Fixr
  • 235
  • 3
  • 12
0
votes
2 answers

Cisco 5505 ASA firewall how to tell one interface to only allow connections from a specific IP address

Interface 1 connects to WAN Interface 2 connects to PROXY PROXY has an ip of 192.168.1.2 How to I tell the ASA 5505 to only allow connections from 192.168.1.2 through interface 2? I can use ADSM or Console command line..
IT_Fixr
  • 235
  • 3
  • 12
0
votes
1 answer

Deny Cisco VPN Access to Active Directory Users?

I run Windows 2008 Server, I have Cisco ASAs setup for site-to-site vpns and remote-access vpn. After researching, i read that you could change dial-in options to allow or disable VPN access for remote users. however, i tested this on myself and it…
Jeff
  • 1,089
  • 5
  • 26
  • 46
0
votes
1 answer

Cisco ASA: How to route PPPoE-assigned subnet?

We've just received a fiber uplink, and I'm trying to configure our Cisco ASA 5505 to properly use it. The provider requires us to connect via PPPoE, and I managed to configure the ASA as a PPPoE client and establish a connection. The ASA is…
Martijn Heemels
  • 7,728
  • 7
  • 40
  • 64
0
votes
2 answers

Giving VPN connections access to all locations?

I have asked a similiar question, but didn't get any answers so i am going to try and rephrase. i have 4 locations corporate and 3 remotes when you are at the corporate location, you have full access to all…
Jeff
  • 1,089
  • 5
  • 26
  • 46
0
votes
1 answer

ASA setup for static mapping a large number of hosts to a single machine

I have a setup where I'm routing hundreds to potentially thousands of SSL-enabled websites through a single virtual IP that does SSL offloading and load balancing. Thanks to the design of SSL itself, I need to have each "SSL host" listen on a unique…
natacado
  • 3,367
  • 29
  • 27
0
votes
1 answer

Cisco ASA VPN tunnel to second location - all traffic flow through first tunnel

I am having trouble setting up a second VPN tunnel from my Cisco ASA 5510. When I run the packet tracer I don't see the packet going throught a NAT exempt stage nor a VPN lookup stage. First tunnel is up and running fine with a Watchguard on one…
user67572
  • 23
  • 2
  • 6
0
votes
3 answers

What ports do I allow over my internal firewall interface?

I have a Cisco ASA that I have VPN tunnels to connect my internal Windows network. I ran into some trouble logging into my domain so I unblocked all the ports on that internal interface. On a previous question posted here, the general consensus…
blsub6
  • 1,131
  • 6
  • 25
  • 45