I'm running ASA 8.0(3)6 routed, single context.
We are running ipsec vpn on both the external interface and the internal interface.
We are connecting with ezvpn clients (871 cisco routers).
The client IP addressing is configured on the client.
Management is now having us use the connections...
I am using a 5540 to allow vpn users access to our network through the outside interface.
Users cannot access our webdmz interface that resided on the same device.
"ASA-3-305005: No translation group found for tcp src outside:192.168.100.15/1673 dst webdmz:10.72.1.19/80
192 being the address...
Our company is directly connect to a partner but have seperate LANs, DNS, etc. and are seperated by a firewall.
Our company NATs our address and they NAT their address.
Both companies access each others resources.
Their dns uses one.com for resolution of our address in their private DNS.
We...
Can someone clarify my understanding of how to specify MAC address for failover mac address command (single context)
I've read the docs and a couple of books and the help but the term "virtual" keeps rearing it's head and throws me for a loop.
failover mac address phy_if active_mac standby_mac...
We had contractors place pixies out at a remote site.
Unfortunately, it did not come in house before going to the site so I didn't get to set it up.
Currently some traffic passes through the failover and I'm not sure why.
Hoping someone can lead me down the correct path so I can fix this once...
Our business partner is claiming that our users connected to their terminal servers are being disconnected "sometimes" from the servers because of a problem with the NAT pool on our PIX firewall.
It's not even all the time that they are getting kicked out of terminal session. The only time...
Having troubles setting the LAN to LAN NAT rules.
Tunnel is up but the translation is not working.
Scenario:
Network B needs to access 2 hosts on Network A but both networks use the same address space of the hosts. Nat needs to be in place.
Network A (my network)
Network B (remote network)...
Wanting to upgrade my concentrator to use the new HTTPS (HTTP over SSL). Currently we have a majority of our clients using IPSEC over TCP port 443 or 10000. Mostly 443 due to some quirky connection methods and areas.
I see in chap 15 that changing the HTTPS port from 443 to something else...
Is it possible to connect the e1 interface on the primary and failover using regular cable based failover to two different switches? If so, how do I handle the configuration if the switches have seperate ips?
Primary-----fo cable-------Secondary
A.B.1.1 A.B.1.2
|...
We have a new guy that wants to replace our PIX's with ISA servers.
Can I get a hand with valid arguments against this?
Your opinion is valuable.
Thanks!
A
did a free Qualys scan on an IP address that I am publishing to the Internet and it found several vulnerabilities on the internal web server itself.
Is this supposed to happen?
How does the ISA server publishing scan for attacks from the Internet?
Is it as good as a Veliciraptor (Application...
I have read through Shindlers Mail Relay chapter and still am having NO luck with SMTP relay. As a matter of fact, I cannot see the port open outside my PIX.
since it's probably a good idea not to explain my current configuration I will just tell you the network configuration.
Internal NIC...
This is probably a very simple question.
ISA Cache Mode.
Web Proxy Clients.
Protocol Rule to allow any.
Outgoing web request Auth not enabled.
Site and content rules:
(1) allow approved inet users access to all. (Local NT Groups
(2) allow all to certain sites
(3) deny all to certain sites
My...
We had a contractor in for a few months to help us out with all our HIPAA work. With 5 more DMZ's and 4 additional 2950's... I'm a bit confused about some things.
My biggest issue is with his NAT 0 statements.;
global (outside) 1 x.x.x.x netmask 255.255.255.128
nat (inside) 0 priv.ip.11...
Having problems access a Java applet through our Proxy or ISA server.
Here is the error:
Opening http://xxx/xxx/servlet/ThinAccessServlet
Connecting http://xxxxx/xxx/servlet/ThinAccessServlet with proxy=172.24.254.80:80
java.sql.SQLException: java.io.FileNotFoundException...
This actually fixed issues with Exchange 5.5 on a 2K server and ISA issues on a 2k Server...laff.
MSKB Q268674:
No DNS Name Resolution If DHCP Client Service Is Not Running
The information in this article applies to:
Microsoft Windows 2000 Server
Microsoft Windows 2000 Advanced Server
Microsoft...
I am new to ISA and had a question about placement of this box in my DMZ and the NIC configuration.
Current configuration:
External NIC on the PIX DMZ: ip 192.168.5.5
Internal NIC on our private network: ip 172.24.254.5
PIX is doing a static translation of 192.168.5.5 out to the inet.
ISA is...
For a couple of days my crew and I have been trying to fix our RAS issues with 2k clients dialing into a nt 4 RAS server and getting assigned ip via dhcp. We could see and access any domain but the one we were joined to.
We went through batter tests, changed some registry settings and last...
Anyone know how to schedule restores to grab the latest backup job and not the one that was checked during the creation of the restore job?
For example; I would like to restore data backed to a tape that can hold many days worth of daily backups. When I create the restore job I don't have an...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.