Questions tagged [cisco-asa]

The Cisco ASA (Adaptive Security Appliance) series of products provide Firewall and VPN functionality.

The Cisco ASA (Adaptive Security Appliance) series of products provide Firewall and VPN functionality as standard. This is Cisco's replacement line for the PIX range, but has additional functionality, mostly related to security, through additional modules.

772 questions
0
votes
1 answer

ASA5520 stops sending to splunk syslog

I have an ASA5520 that is set up to send logs to a splunk syslog server. the setup works for a while, usually around 24 hours or so, but then stops until either the logging is reconfigured (twiddling the ports) or the ASA is restarted. what should…
Devnull
  • 951
  • 1
  • 7
  • 23
0
votes
2 answers

Cant route VLAN over VPN between Cisco ASA 5505 and Cisco 870

We've had an existing VPN between a 5505 and 870 for some time. We've just added VLANs to the network on the 5505 side. We can't seem to figure out how to get devices on the VLANs to communicate with devices on the 870 network which have no VLANs.…
user60984
  • 1
  • 1
0
votes
1 answer

Cisco ASA 5510 multiple time-range commands

I asked this question a while back, and have since discovered the "time-range" command in the ASA 5510. This works as expected. Is it possible to setup 2 sets of access-list rules that take effect at different times of day? For Example, right now I…
minamhere
  • 859
  • 7
  • 18
0
votes
1 answer

Email trouble with ISA 2004 behind Cisco ASA

Without going into the whys, I've got an ISA 2004 server behind a Cisco ASA. Since the installation of the ASA, I can no longer send email to one particular domain. I get a "500 Non RFC-compliant response received" bounce. Using a telnet session…
Boden
  • 4,968
  • 12
  • 49
  • 70
0
votes
1 answer

Cisco ASA 5520 and "source routing based"

I have a Cisco ASA 5520 (8.3.x) with 3 interface active. One HDSL internet connection (outsite1), one ADSL internet connection (outside2) and one for internal LAN (inside). The default gateway is the HDSL connection. I'm interesting to routing the…
SmV
  • 25
  • 1
  • 5
0
votes
2 answers

Cisco ASA 5505 does not initiate site to site VPN?

I am using Cisco ASA 5505 to establish a site to site VPN tunnel. The problem is that, my ASA 5505 does not seem to initiate the negotiation but once the device on the other starts the negotiation the tunnel establishes successfully! Is there any…
SoulReaver
0
votes
1 answer

Rules for Cisco ASA 5505 Port Forwarding to enable OpenVPN and WWW

We use Openvpn in our company to connect external clients with our office network. After setting up the new router Cisco ASA 5505 we need to forward the ports for Openvpn and WWW in order to keep this both services running. My understanding is that…
user36461
0
votes
1 answer

Removed subnet, forwarding rogue software with Cisco firewall

As we moved to another firewall with fewer connectors (PIX 515 -> ASA 5510), I had to prune the network infrastructure a bit, so one of the subnets had to go. Now we've got one piece of hardware that still insists on reaching one of the servers via…
mhd
  • 143
  • 4
0
votes
2 answers

Cisco ASA (Client VPN) to LAN - through second VPN to second LAN

We have 2 site that is linked by an IPSEC VPN to remote Cisco ASAs: Site 1 1.5Mb T1 Connection Cisco(1) 2841 Site 2 1.5Mb T1 Connection Cisco 2841 In addition: Site 1 has a 2nd WAN 3Mb bonded T1 Connection Cisco 5510 that connects to same LAN as…
user50855
  • 1
  • 1
  • 1
0
votes
1 answer

ASA VPN :: Why Blocked Packets on Private Network?

Have successfully connected to my ASA via VPN client. Setup: ASA >> Switch >> 2 CentOS Linux Servers When I open a local terminal (OSX), I can ping inside interface on (192.168.0.1) but not inside servers listening on 192.168.0.2~254 Inside servers…
virtualeyes
  • 675
  • 3
  • 12
  • 28
0
votes
1 answer

Port translation in router causing some email to fail

We are in the process of setting up a spam filter (SAVASM). One change we are making is to push incoming email on port 25 through our spam filter/server but have users actually send their email on a different port. I am attempting to make this…
dmr83457
  • 727
  • 3
  • 9
  • 20
0
votes
1 answer

ASA >> Switch >> Server WAN/LAN Routing to NIC ports

I bought a Dell R610 to setup VMware ESXi -- the server has 2X dual port NICs. Normally with a single dual port NIC I assign my WAN IPs to eth0 and LAN IPs to eth1. With the new server I'd like to route my WAN IPs to eth0:x, eth1:x, eth2:x, &…
virtualeyes
  • 675
  • 3
  • 12
  • 28
0
votes
2 answers

Cisco ASA WebVPN RDP Plugin Fullscreen

I am using a ASA5520 with 8.2.2(ED) Image and the RDP Java Plugin for Termialserver connections. The version of the Plugin is 1.1.1. "rdp-plugin.090915.jar" and "rdp2-plugin.090211.jar" everything is working fine, except the fact that clients are…
sam
  • 155
  • 2
  • 5
  • 17
0
votes
1 answer

CISCO ASA 5505 Base Licence - Ability to interpret http request headers (host headers)

Base licence configured CISCO ASA 5505 is not capable of routing based on interpretation of the inbound http request headers - affectively host header redirect - am I correct? If I am correct will an upgrade from the base licence help me - or is…
Klaptrap
  • 157
  • 12
0
votes
1 answer

Clear Cisco ASA connection count

Here's what I'm doing to get a connection count on my ASA asa# show conn count 100 in use, 3389 most used asa# I want to reset the most used count. How do I do that?
Jason Berg
  • 19,084
  • 6
  • 40
  • 55