Hi All,Wondering if anyone is using ISE 3.0 REST ID with Azure AD ? https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/216182-configure-ise-3-0-rest-id-with-azure-act.htmlIf yes, once you've added Azure AD as an External Id...
I have a FirePower 1100 for my home lab and for some reason, it lost DNS connectivity and lost registration. I did not notice and now I can't deploy changes. I connected to the CLI and tried to ping from system. When I try to ping from system I get t...
I learning how to set-up firewall and came accross such a problem when trying to connect through web-browser to DMZSERV : 3. The packet is coming from an outside network. The device looks up its NAT table for necessary translations. 4. The packet is ...
Any document related to machine authentications using ISE in meraki wifi infra for the corporate devices. I got to configure using user authentications. searched many forums for the same. can anyone point it to correct documentaions or link to config...
Good morning/Afternoon/Evening! We've recently purchased a bunch of the DUO hardware tokens and are looking to put them out to the agency. We have a mixed group of people who are currently using the app and getting phone calls for authentication. I w...
I am implementing Duo for Windows Login for the first time. I have successfully installed on several servers. This is working as expected.Question: Is it necessary to create a new Application for each server that is protected? Or can I "reuse" one Ap...
Hello Folks, I have a pair of ASA5516 with HA mode, ISP provides a high-speed WAN 500Mbps up/download, while doing some speed tests recently we noticed that all our tests from the inside network are not bypassing 100mbps, I checked all inside/outside...
Hello all, I would like to get some help how to How to expend existing disk space of cisco vFMC. For example, i have 2500 GB disk at existing fmc, then i want to get increase 300 GB. I did increase at vm level to 300 GB, and i check "df -h" command i...
During the FTD HA upgrade from FMC, if first standby is failed /corrupted during the upgrade ,will FMC will try to upgrade other devices in the failover pair or will abort the upgrade?.
I have a new isp on a 2nd outside interface. I would like to send all traffic from one ip range and only that range out over the new ISP.Currently Here is what I haveinterface GigabitEthernet1/1nameif Outsidesecurity-level 0ip address a.a.a.a 255.255...
hi Cisco,I am using below topology in my lab where ASA in multiple context - C1 and C2 sharing the same physical interface, in different VLANs (sub interface) is not able to establish EIGRP neighborship with 2 cisco routers (point to point). Although...
I am having an issue with Cisco ISE and TenableSC integration. In Cisco documentation it reads that i need to upload the system and root certificates from TenableSC. By using:sudo scp /opt/sc/support/conf/TenableCA.crt [username]@[your ip address]:Te...
Hello,I want to set up a IPSec IKEv2 VPN to a central ASA. On my side we have a cisco 897.First I tried a crypto map configuration. Didn't work because the IKEv2 SA goes UP and immediately goes DOWN with the error message "IKEv2:(SESSION ID = 1,SA ID...