Security

Explore the security forums and share your expertise about firewalls, email and web security, Identity Service Engine, VPN, AnyConnect and more.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Browse the Community

Network Access Control

Cisco Access Control Server (ACS), Identity Services Engine (ISE), Zero Trust Workplace

31784 Posts

Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.

70360 Posts

Duo Security

Get started with or get better at administering and using Duo by interacting with peers and experts!

3197 Posts

Activity in Security

cannot get to privileged enable mode via console

After searching through other posts, my config seems OK but still strange behaviourasa 9.20 running on FPWR chasisI cannot get in enabled mode when connecting to ASA via console.It used to work but stopped after I played (disable and restore) with aa...

kewwa by Level 1
  • 151 Views
  • 9 replies
  • 0 Helpful votes

FTD re-register to FMC chassis mode

Deployed a 3100 in chassis mode to the FMC a few days ago. All went to plan.Determined we needed to change the IP so decided just to delete the device from FMC and re-provision it.On the FTD via local-mgmt did a erase configuration. The device wiped ...

glsparks by Level 1
  • 27 Views
  • 1 replies
  • 0 Helpful votes

VPN Tunnel connecting at a unconfigured setting - Phase 1 Timer

OK, so I've got a set of ASA's and we are migrating them to Firepowers, and all seems ok. In the past we have noticed that for some reason on the ASA's, no matter what you specify as the parameters for phase 1, the rekey timer always connects at 3600...

Screenshot 2024-04-25 142720.png Screenshot 2024-04-25 142752.png StephenCarter_0-1714052852588.png

AnyConnect DNS Issue

We are having an issue were after disconnecting from AnyConnect and connecting the next day, they get a new IP in AnyConnect but in our local DNS they have another IP which I assume is probably from the day before. This obviously causing name resolut...

jf1134 by Level 1
  • 0 Views
  • 0 replies
  • 0 Helpful votes

The operation took longer than expected.

I have just synchronized both Active Directory and Cisco ISE, ISE is using my server (AD) as an NTP server, everything is fine, but now I'm facing an issue "Status Summary: The operation took longer than expected. This may be caused by slow network c...

Jason2005 by Level 1
  • 307 Views
  • 15 replies
  • 0 Helpful votes

Cisco anyconnect browser ERR_SSL_Protocol_ERROR

Good day to everyone.I have two Cisco ASA running on FPR2130 assembled into a balancing group, for example:vpn-gw1.example.comvpn-gw2.example.comgeneral address vpn.example.com.Firmware version 9.18.3.56Anyconnect 4.10.07062At the moment, all our emp...

Cisco ISE cannot join Windows Server Core.

My Windows Server Core having an internal address of 192.168.50.2, when natting it (NAT) it has an address of 192.168.99.36 (I'm installing Windows Server Core image on an EVE-NG VM and the EVE-NG VM is installed on ESXi).I have a Cisco ISE VM instal...

Jason2005 by Level 1
  • 68 Views
  • 1 replies
  • 0 Helpful votes

Cisco WSA log shows 503 status code

Hi we have 2 WSA out of which one WSA is showing 503 error for a specific Site. When i tried nslookup in WSA for that site it shows the server returned no data(in both WSA).But the site is working in one WSA but not in the other and after 15 mins the...

DK9 by Level 1
  • 32 Views
  • 0 replies
  • 0 Helpful votes

FMCv 7.2.5.1: High CPU load - how to troubleshoot?

Hello everybody,our customer has a FMCv running sugg. rel. 7.2.5.1 and has a high CPU load of approx. 97%.(see attached screen dump).The VM has 4 CPUs, 32GB RAM and 250GB HDD.The FMC is managing a HA of two Firepower 1120 running rel. 7.2.5.A FMC reb...

swscco001 by Level 1
  • 70 Views
  • 2 replies
  • 0 Helpful votes

Resolved! CISCO WSA upgrade alert error

We have upgraded our S1000v(wsa ) from 14.5.1 to 14.5.2 and upgrade was successful but when we checked the alerts we found an alerts as An application fault occurred: ('heimdall/svc.py send_command|195', "<class 'heimdall.exceptions.unknownprocess'="...

DK9 by Level 1
  • 108 Views
  • 7 replies
  • 0 Helpful votes

Active accounts are being displayed as Inactive?

Can anyone explain why an active account would be listed as having an Inactive status? These are accounts with a recent logon and authentication including successful DUO pushes. It's making it difficult to track those accounts that are actually Inact...

EMJ by Level 1
  • 55 Views
  • 2 replies
  • 0 Helpful votes

Duo Desktop not recognized

Hello, I am using Cisco Anyconnect to connect to VPN. The system is using Duo Desktop for device health. It is already installed, running and all the checks are ok. However, I am getting this error message and not able to proceed: Install Duo Desktop...

Sh2024 by Level 1
  • 129 Views
  • 7 replies
  • 0 Helpful votes

SSM ON-Prem TACACS+ and Clearpass

Hi,I am trying to configure TACACS+ on our SSM On-Prem server so that I am able to login on the Webinterface with my AD user. The TACACS+ configuration is done in Clearpass. And the test in the configuration window on the SSM server was successful.Bu...

Counterdoc_0-1713516283437.png Counterdoc_1-1713516355075.png Counterdoc_2-1713516408976.png
Top Experts - Last 30 Days