I am on a bit of a hotseat right now. I have a Cisco ASA5510 used for b2b vpn connections. Some one from my sales departmet has offered to allow a customer to monitor our vpn device via snmp (with nagios).
I have a major proble with this. Unfortunatly it is gettign stuffed down my throat. I am worried about compromising by gear. We have other customers on this device.
Can someone tell if there is a safe way to do this.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...