How to access the Cisco ASA using ASDM

Document

Wed, 06/11/2014 - 15:01
May 31st, 2012

 

Introduction

Scenario 1:

This document discuuss the minimum configuration required to access the Cisco ASA through ASDM.

 

Scenario 2:

User have 4 number of ASA5505 Firewall 

The Problem faced is that  2 of them working fine but when he goes to rowser and types "https://192.168.1.1" and nothing happens but the other two firewall are working fine once user hit Enter its go to the ASDM Page 

 He has reseted the Other two firewalls to factory default and he erased the Flash and reload them again nothing happens. User is using asa913-k8.bin  for ASDM asdm-714.bin. Need help regarding this issue

 

Configurations

 

Complete the below steps.

 

1. Configure the management interface

 

conf t

int e 0/2

ip address 192.168.100.2 255.255.255.0

nameif manage

security-level 80

exit

exit

 

2. Configure the username and privilege

 

username Test password [email protected] privilege 15

 

3. Configure the Cisco ASA to allow http connections

 

http server enable

http 192.168.100.0 255.255.255.0 manage

 

Now, launch the ASDM by typing "https://192.168.100.2" in the web browser of any PC which is in 192.168.100.0 network.

You should be able to access the ASA using the ASDM from that PC.

 

Scenario 2:

User may be lacking the free (but necessary for ASDM) 3DES license.

Please check:
show ver | i 3DES

If it is not active, you can go to the Cisco licensing portal ("Get New > IPS, Crypto or Other Licenses") and obtain a free license for that feature.

Try adding the following command and then test:

ssl encryption rc4-sha1 aes128-sha1 aes256-sha1 3des-sha1

What version of java are you running on your PC?  

  • If you do not have the latest version, please update java and then try again.  If you are running the newest version try downgrading java and then try again.
  • If that doesn't work enable logging and try to connect to the ASDM and then check the logs to see if there is anything prohibiting access.
  • If none of those work, log into the CLI and issue the command debug http then try to connect and see if there is any output in the debug.

 

Loading.
Bratin Saha Sat, 07/27/2013 - 21:20

The configuration seems to be incomplete - there should be "asdm image flash:/asdm.bin", where, asdm.bin would be the asdm package in flash. Please refer the cisco.com website for compatible packages with the ASA software version.

Useful commands to verify the configuration:

show run asdm

show run http

Use https://192.168.100.2/admin to connect. Java is required to run the ASDM.

Actions

This Document

Related Content