[x]
Posted via EE Mobile

Search, ask, and monitor your questions on the go with EE Mobile. Visit Experts Exchange from your mobile device and never be out of touch again.

Question
[x]
Attachment Details

Cannot Load Gui on Cisco ASA 5505.

Asked by systemhelp1 in Cisco PIX Firewall

Tags: ASA firewall

Can't load firewall from https://10.8.183.254.

Config:
B-FW# show conf
: Saved
: Written by enable_15 at 13:01:06.706 UTC Wed Jun 10 2009
!
ASA Version 7.2(4)
!
hostname MB-FW
domain-name xxxxxxxx
enable password c16TWPPT1xek8HOB encrypted
passwd eq87i0.Tev6OEC9G encrypted

!
interface Vlan1
 nameif inside
 security-level 100
 ip address 10.8.183.254 255.255.255.0
!
interface Vlan2
 nameif outside
 security-level 0
 ip address xx.xx.xx.xx xx.xx.xx.xx
!
interface Ethernet0/0
 switchport access vlan 2
!
interface Ethernet0/1
!
interface Ethernet0/2
!
interface Ethernet0/3
!
interface Ethernet0/4
!
interface Ethernet0/5
!
interface Ethernet0/6
!
interface Ethernet0/7
!
ftp mode passive
dns server-group DefaultDNS
 domain-name xxxxxxx
*****
pager lines 24
logging asdm informational
mtu inside 1500
mtu outside 1500

ip verify reverse-path interface outside
no failover
icmp unreachable rate-limit 1 burst-size 1
asdm image disk0:/asdm-611.bin
no asdm history enable
arp timeout 14400
global (outside) 1 interface
nat (inside) 0 access-list vpn_only
nat (inside) 1 0.0.0.0 0.0.0.0

route inside 10.127.233.0 255.255.255.0 10.8.183.155 1
route inside 10.127.220.0 255.255.255.0 10.8.183.155 1
route inside 10.127.221.0 255.255.255.0 10.8.183.155 1
route inside 10.127.222.0 255.255.255.0 10.8.183.155 1
route inside 10.127.223.0 255.255.255.0 10.8.183.155 1
route inside 10.127.224.0 255.255.255.0 10.8.183.155 1
route inside 10.127.231.0 255.255.255.0 10.8.183.155 1
route inside 10.127.232.0 255.255.255.0 10.8.183.155 1
route inside 10.127.234.0 255.255.255.0 10.8.183.155 1
route inside 10.127.235.0 255.255.255.0 10.8.183.155 1
route inside 10.127.236.0 255.255.255.0 10.8.183.155 1
route inside 10.127.237.0 255.255.255.0 10.8.183.155 1
route inside 10.127.239.0 255.255.255.0 10.8.183.155 1
route inside 10.127.241.0 255.255.255.0 10.8.183.155 1
route inside 10.127.242.0 255.255.255.0 10.8.183.155 1
route inside 10.127.243.0 255.255.255.0 10.8.183.155 1
route inside 10.127.244.0 255.255.255.0 10.8.183.155 1
route inside 10.127.245.0 255.255.255.0 10.8.183.155 1
route inside 10.127.246.0 255.255.255.0 10.8.183.155 1
route inside 10.127.247.0 255.255.255.0 10.8.183.155 1
route inside 10.127.248.0 255.255.255.0 10.8.183.155 1
route inside 10.127.249.0 255.255.255.0 10.8.183.155 1
route inside 10.127.250.0 255.255.255.0 10.8.183.155 1
route inside 10.127.251.0 255.255.255.0 10.8.183.155 1
route inside 10.127.253.0 255.255.255.0 10.8.183.155 1
route inside 10.127.254.0 255.255.255.0 10.8.183.155 1
route inside 10.127.240.0 255.255.255.0 10.8.183.155 1
route inside 10.128.27.0 255.255.255.0 10.127.238.254 1
route inside 10.216.65.0 255.255.255.0 10.127.238.254 1
route inside 10.127.238.0 255.255.255.0 10.8.183.155 1
route outside 0.0.0.0 0.0.0.0 xx.xx.xx.xx 1
timeout xlate 0:05:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
aaa-server TACACS+ protocol tacacs+
aaa-server RADIUS protocol radius
http server enable
http 192.168.1.0 255.255.255.0 inside
http 10.127.0.0 255.255.0.0 inside
http 10.127.0.0 255.255.255.0 inside
http 10.127.1.0 255.255.255.0 inside
http 10.0.0.0 255.0.0.0 inside
http 10.8.0.0 255.255.0.0 inside
no snmp-server location
no snmp-server contact
snmp-server community public
snmp-server enable traps snmp authentication linkup linkdown coldstart
crypto ipsec transform-set myset esp-des esp-md5-hmac
crypto dynamic-map dynmap 30 set transform-set myset
crypto map newmap 20 ipsec-isakmp dynamic dynmap
crypto map newmap interface outside
crypto isakmp identity address
crypto isakmp enable outside
crypto isakmp policy 10
 authentication pre-share
 encryption des
 hash md5
 group 2
 lifetime 86400
crypto isakmp nat-traversal  10
telnet 10.127.1.0 255.255.255.0 inside
telnet 10.127.0.0 255.255.255.0 inside
telnet 10.8.0.0 255.255.255.0 inside
telnet 10.0.0.0 255.0.0.0 inside
telnet timeout 10
ssh 0.0.0.0 0.0.0.0 outside
ssh timeout 5
console timeout 0
dhcpd dns 10.8.183.247 10.127.240.248
dhcpd domain driveprestige.com
dhcpd auto_config outside
!


username admin password gpaVlXjmiQZdTpWl encrypted privilege 15
username bobby password KjluUKd.K5WNLVee encrypted privilege 15

!
class-map class_sip_tcp
 match port tcp eq sip
class-map inspection_default
 match default-inspection-traffic
!
!
policy-map type inspect dns preset_dns_map
 parameters
  message-length maximum 512
policy-map global_policy
 class inspection_default
  inspect dns preset_dns_map
  inspect ftp
  inspect h323 h225
  inspect h323 ras
  inspect http
  inspect rsh
  inspect rtsp
  inspect skinny
  inspect esmtp
  inspect sqlnet
  inspect tftp
 class class_sip_tcp
  inspect sip
!
service-policy global_policy global
prompt hostname context
Cryptochecksum:4791b6e145ccbe5bcc2c3834bd1b9cb9


MB-FW# dir

Directory of disk0:/

2083   -rw-  4181246     07:05:44 May 26 2009  securedesktop-asa-3.2.1.103-k9.pk
g
3104   -rw-  398305      07:05:56 May 26 2009  sslclient-win-1.1.0.154.pkg
4      -rw-  8515584     12:58:14 Jun 10 2009  asa724-k8.old
4794   drw-  0           07:07:24 May 26 2009  crypto_archive
4805   -rw-  7295568     11:32:46 Jun 10 2009  asdm-611.bin
3202   -rw-  6514852     11:35:52 Jun 10 2009  asdm-524.old
6587   -rw-  19666944    12:53:56 Jun 10 2009  asa811-smp-k8.bin

127111168 bytes total (80470016 bytes free)
MB-FW#

MB-FW# show ver

Cisco Adaptive Security Appliance Software Version 7.2(4)
Device Manager Version 6.1(1)

Compiled on Sun 06-Apr-08 13:39 by builders
System image file is "disk0:/asa724-k8.old"
Config file at boot was "startup-config"

MB-FW up 7 mins 47 secs

Hardware:   ASA5505, 256 MB RAM, CPU Geode 500 MHz
Internal ATA Compact Flash, 128MB
BIOS Flash M50FW080 @ 0xffe00000, 1024KB

Encryption hardware device : Cisco ASA-5505 on-board accelerator (revision 0x0)
                             Boot microcode   : ?CNlite-MC-Boot-Cisco-1.2
                             SSL/IKE microcode: ?CNlite-MC-IPSEC-Admin-3.03
                             IPSec microcode  : ?CNlite-MC-IPSECm-MAIN-2.05
 0: Int: Internal-Data0/0    : address is 0025.8454.c178, irq 11
 1: Ext: Ethernet0/0         : address is 0025.8454.c170, irq 255
 2: Ext: Ethernet0/1         : address is 0025.8454.c171, irq 255
 3: Ext: Ethernet0/2         : address is 0025.8454.c172, irq 255
 4: Ext: Ethernet0/3         : address is 0025.8454.c173, irq 255
 5: Ext: Ethernet0/4         : address is 0025.8454.c174, irq 255
 6: Ext: Ethernet0/5         : address is 0025.8454.c175, irq 255
 7: Ext: Ethernet0/6         : address is 0025.8454.c176, irq 255
 8: Ext: Ethernet0/7         : address is 0025.8454.c177, irq 255
 9: Int: Internal-Data0/1    : address is 0000.0003.0002, irq 255
10: Int: Not used            : irq 255
11: Int: Not used            : irq 255

Licensed features for this platform:
Maximum Physical Interfaces : 8
VLANs                       : 20, DMZ Unrestricted
Inside Hosts                : Unlimited
Failover                    : Active/Standby
VPN-DES                     : Enabled
VPN-3DES-AES                : Disabled
VPN Peers                   : 25
WebVPN Peers                : 2
Dual ISPs                   : Enabled
VLAN Trunk Ports            : 8

This platform has an ASA 5505 Security Plus license.

Serial Number: xxxxxxxxxx
Running Activation Key: 0xd13edd4f 0x88e2d232 0x1c90618c 0xb2e4cc14 0x011b3cb1
Configuration register is 0x1
Configuration has not been modified since last system restart.
MB-FW#
[+][-]06/10/09 02:10 PM, ID: 24596552Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]06/10/09 02:17 PM, ID: 24596639Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]06/10/09 10:06 PM, ID: 24598876Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]06/11/09 06:08 AM, ID: 24601730Author Comment

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 30-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]06/11/09 06:19 AM, ID: 24601848Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]06/11/09 06:24 AM, ID: 24601916Author Comment

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 30-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]06/11/09 06:44 AM, ID: 24602150Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]06/11/09 07:30 AM, ID: 24602771Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]06/11/09 08:29 AM, ID: 24603510Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]06/11/09 08:33 AM, ID: 24603563Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]06/11/09 09:02 AM, ID: 24603902Author Comment

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 30-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]06/11/09 10:36 AM, ID: 24604799Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
 
Loading Advertisement...
20091021-EE-VQP-81 - Hierarchy / EE_QW_3_20080625