I'm not sure if this is possible since my NAT skillz don't encompass this complexity. Is it possible, on an ASA 5525x, to redirect an internal subnet's HTTP traffic from PublicSite1 to PublicSite2 using a NAT? I believe I can do it for everyone by reversing a NAT in the ASDM wizard but I have...
I've been configuring SSL AnyConnect on ASAs for some time now but recently running into a frustrating issue due to specific network configs. When setting up a DHCP Pool for AnyConnect, I've always used a DHCP pool on the same subnet as the ASA's INSIDE interface. AnyConnect works like a...
O' Great Tek-Tips, I believe I have a simple question for you but hard one for me.
I have three VLANs. VLAN60 is completely isolated from all other vlans. Certain machines on VLAN30 have access to certain machines on VLAN60 with RDP. They work fine. However, I need to have Machine1 on VLAN60...
I am having a major issue with the webvpn configuration on my firewall. I have the following setup.
1. Webvpn with homepage set to a webpage with several links
2. One link being our JD edwards enterprise One system
3. Cisco Secure Desktop (not enabled at the time)
4. Cisco ASA software 8.0(3)...
I have a unique setup at a couple of our locations and a strange issue to go with it.
Computer => ASA 5505 => SLE VPN Router => Satellite ---> Internet
Since I'm using an ASA 5505 more as a router than a VPN client, I'm having difficulty getting the remote network to see the machine behind the...
After finding out that PPTP does not work on ASAs, I'm forced to use L2TP over IPSec. I'm configuring an ASA in a lab and have a machine connected to the outside interface. I copied Cisco's L2TP setup config from their site, but it does not work. I've done some research and found others find...
I have an ASA5505 that is configured to disallow anyone access to the EZVPN via User Authentication unless they are in my 'mac-exempt' list. However, even while a machine is blocked, it still has access to request DNS from the server on VPN.
PIX 501s are setup similar but they do not allow DNS...
Greetings,
My company has paid for a third party Auditing company to audit the security of our remote locations, that mostly use PIX 501s. However, we are failing the audits do to that fact that they cannot scan the outside interface of the PIXs. I thought that was a good thing but...
Hey all!
I've been tasked with finding a script that updates user's contact information in the GAL on an Exchange 2k3 environment. Since this task is being delegated, I'm looking for an HTA that will only show the attributes that the account contact manager an change. Below is a script does...
I need some help on removing an ACL from all user objects in my domain. I have a user that has 'send as' rights on every account in my domain. The rights are not propagating from the parent folder. Is there any script that can be run to remove that particular ACL from all the accounts in one...
I have an interesting problem which seems that no one else has. I am deploying many 501 PIX out to locations which will connect to my 515 PIX using Easy VPN. The 501s are using network-extension mode. Since the locations will be on the domain and I'll be controlling their internet access via...
A month ago, I had a post about getting MAC filtering to work locally on a PIX 501. I finally figured it out. However, now I have the same problem again but this time I'm using EasyVPN and the lines that blocked access to the network now breaks the EasyVPN client connection to the EasyVPN...
I'm might be trying something that cannot be done. I am trying to apply 2 different computer configurations to 2 different security groups. Specifically, I'm trying to get one account to have an "account lockout policy" set to 0. Another account, logging onto the same machine, needs to have...
I have a 515 PIX that was initially setup to allow ~120 vpn connections using Dynamic IPSEC with a common ISAKMP key. We are finding that this doesn't work very well due to the PIX 515 confusing it's Destination IP address while the VPN is connected, rendering that location's VPN unusable.
I'm...
I have a dilima with physical access to Cisco PIX 501s. I am about to deploy 70+ PIX 501s out to the field. Each PIX will have a VPN back to a PIX 515e, which is in my office. Anyone on the VPN will be on my domain. I'm a concerned with the physical access to the PIX 501s. My machines I...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.