Security

Explore the security forums and share your expertise about firewalls, email and web security, Identity Service Engine, VPN, AnyConnect and more.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Browse the Community

Network Access Control

Cisco Access Control Server (ACS), Identity Services Engine (ISE), Zero Trust Workplace

31786 Posts

Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.

70364 Posts

Duo Security

Get started with or get better at administering and using Duo by interacting with peers and experts!

3198 Posts

Activity in Security

Duo Auth Proxy Ldaps for vCenter

Do you have any idea on this?[ldap_server_auto]client=ad_clientikey=nnnnskey=nnnnapi_host=api-nnnn.duosecurity.comfailmode=securefactors=pushexempt_ou_1=Xexempt_primary_bind=falseAfter Enable I checked on port seeing certificate is work now. but I tr...

Alex H by Level 1
  • 0 Views
  • 0 replies
  • 0 Helpful votes

ikev2 VPN tunnel trouble shooting help

Howdy Cisco Community!Need your help as fairly new trouble shooting site to site VPN connectivity.I am unable to establish VPN connectivity per information below.Site:1crypto ipsec ikev2 ipsec-proposal CSM_IP_1protocol esp encryption aes-256protocol ...

Makoon by Level 1
  • 34 Views
  • 1 replies
  • 0 Helpful votes

upgrade process of firepower 2130

hello We have a old fire power that I have no idea how to upgrade. The actual device is a Cisco Firepower 2130 Threat Defense (77) Version 7.0.4 . Cisco Adaptive Security Appliance Software Version 9.16(3)18. and we have a FMC that is Cisco Firepower...

Cisco ASA 5525-X Open SSH Upgrade

The current version of my Cisco Firewall is SSH-2.0-OpenSSH_7.5. Following the recommendation from our security team, I would like to upgrade it to version 8.8 or a later version. Can you please guide me on how to perform the upgrade?

Resolved! find license via serial number

the seller at the bazaar can't tell me the license type, he can't. he claims that I can find out the license type myself using the serial number, is that true?

Web Application Server

Dear Community,I'm asking for you guidance. I have come across a challenge on Cisco ASA version 9.8. Need to allow a web server to be access outside(Public) from DMZ Zone to Ouside Zone.  Per below configuration template. Nat is transilating but acce...

dissai by Level 1
  • 50 Views
  • 2 replies
  • 0 Helpful votes

Posture Logs

Hello,In the AnyConnect client under the "Scan Summary" tab, it shows the names of the posture checks as they are defined in ISE.  Is there a log on the workstation that will actually show WHAT those items in the Scan Summary are actually looking at?

ryanbess by Level 1
  • 116 Views
  • 2 replies
  • 0 Helpful votes

ASA 9.14.4.24

ASA 9.14.4.24:  https://software.cisco.com/download/home/284143129/type/280775065/release/9.14.4%20Interim 

wayfaring by Level 1
  • 117 Views
  • 2 replies
  • 0 Helpful votes

FTD re-register to FMC chassis mode

Deployed a 3100 in chassis mode to the FMC a few days ago. All went to plan.Determined we needed to change the IP so decided just to delete the device from FMC and re-provision it.On the FTD via local-mgmt did a erase configuration. The device wiped ...

glsparks by Level 1
  • 130 Views
  • 5 replies
  • 0 Helpful votes

DefaultProfile.xml in Cisco

Hi here,I'm looking for advice on editing my DefaultProfile.xml in Cisco and deploying it via policy to all Mac devices to establish a new connection. However, it seems that my Mac is retaining memory of the last successful connection, making it appe...

Resolved! Ikev2 Ipsec Between Asa and Sonicwall

Hi team, Need help in understanding an issue faced when creating a tunnel between Asa and Sonicwall (Issue got resolved) still need help to understand. SonicWall: Phase 1Ikev2Encryption aesAuthentication sha265Dh 14Lifetime 86400 Asa: phase 1Ikev2 En...

SajeshB by Level 1
  • 4937 Views
  • 13 replies
  • 0 Helpful votes

ASA NAT for Remote VPN to Internet (Specific)

I'm hoping I can explain this clearly enough. I have a remote site with a site-to-site tunnel. From the Home Office and the remote site, we are allowing a split tunnel, but we need to tunnel a specific external site via the home office.The IP Scope f...

Site-to-site vpn failover causing memory spike in spoke sites

Hi All. I would like to get your thoughts on the following issue i have been facing since implementing Dual ISP and failover for site-to-site vpn tunnels.Hub Site:ASA5515 using 9.6(4)42Spoke sites:Cisco ISRs using 15.1(4)M8, using voip services over ...

ASA dual.png
PikaPika by Level 1
  • 278 Views
  • 13 replies
  • 0 Helpful votes
Top Experts - Last 30 Days