Can't load firewall from
https://10.8.183.254.
Config:
B-FW# show conf
: Saved
: Written by enable_15 at 13:01:06.706 UTC Wed Jun 10 2009
!
ASA Version 7.2(4)
!
hostname MB-FW
domain-name xxxxxxxx
enable password c16TWPPT1xek8HOB encrypted
passwd eq87i0.Tev6OEC9G encrypted
!
interface Vlan1
nameif inside
security-level 100
ip address 10.8.183.254 255.255.255.0
!
interface Vlan2
nameif outside
security-level 0
ip address xx.xx.xx.xx xx.xx.xx.xx
!
interface Ethernet0/0
switchport access vlan 2
!
interface Ethernet0/1
!
interface Ethernet0/2
!
interface Ethernet0/3
!
interface Ethernet0/4
!
interface Ethernet0/5
!
interface Ethernet0/6
!
interface Ethernet0/7
!
ftp mode passive
dns server-group DefaultDNS
domain-name xxxxxxx
*****
pager lines 24
logging asdm informational
mtu inside 1500
mtu outside 1500
ip verify reverse-path interface outside
no failover
icmp unreachable rate-limit 1 burst-size 1
asdm image disk0:/asdm-611.bin
no asdm history enable
arp timeout 14400
global (outside) 1 interface
nat (inside) 0 access-list vpn_only
nat (inside) 1 0.0.0.0 0.0.0.0
route inside 10.127.233.0 255.255.255.0 10.8.183.155 1
route inside 10.127.220.0 255.255.255.0 10.8.183.155 1
route inside 10.127.221.0 255.255.255.0 10.8.183.155 1
route inside 10.127.222.0 255.255.255.0 10.8.183.155 1
route inside 10.127.223.0 255.255.255.0 10.8.183.155 1
route inside 10.127.224.0 255.255.255.0 10.8.183.155 1
route inside 10.127.231.0 255.255.255.0 10.8.183.155 1
route inside 10.127.232.0 255.255.255.0 10.8.183.155 1
route inside 10.127.234.0 255.255.255.0 10.8.183.155 1
route inside 10.127.235.0 255.255.255.0 10.8.183.155 1
route inside 10.127.236.0 255.255.255.0 10.8.183.155 1
route inside 10.127.237.0 255.255.255.0 10.8.183.155 1
route inside 10.127.239.0 255.255.255.0 10.8.183.155 1
route inside 10.127.241.0 255.255.255.0 10.8.183.155 1
route inside 10.127.242.0 255.255.255.0 10.8.183.155 1
route inside 10.127.243.0 255.255.255.0 10.8.183.155 1
route inside 10.127.244.0 255.255.255.0 10.8.183.155 1
route inside 10.127.245.0 255.255.255.0 10.8.183.155 1
route inside 10.127.246.0 255.255.255.0 10.8.183.155 1
route inside 10.127.247.0 255.255.255.0 10.8.183.155 1
route inside 10.127.248.0 255.255.255.0 10.8.183.155 1
route inside 10.127.249.0 255.255.255.0 10.8.183.155 1
route inside 10.127.250.0 255.255.255.0 10.8.183.155 1
route inside 10.127.251.0 255.255.255.0 10.8.183.155 1
route inside 10.127.253.0 255.255.255.0 10.8.183.155 1
route inside 10.127.254.0 255.255.255.0 10.8.183.155 1
route inside 10.127.240.0 255.255.255.0 10.8.183.155 1
route inside 10.128.27.0 255.255.255.0 10.127.238.254 1
route inside 10.216.65.0 255.255.255.0 10.127.238.254 1
route inside 10.127.238.0 255.255.255.0 10.8.183.155 1
route outside 0.0.0.0 0.0.0.0 xx.xx.xx.xx 1
timeout xlate 0:05:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
aaa-server TACACS+ protocol tacacs+
aaa-server RADIUS protocol radius
http server enable
http 192.168.1.0 255.255.255.0 inside
http 10.127.0.0 255.255.0.0 inside
http 10.127.0.0 255.255.255.0 inside
http 10.127.1.0 255.255.255.0 inside
http 10.0.0.0 255.0.0.0 inside
http 10.8.0.0 255.255.0.0 inside
no snmp-server location
no snmp-server contact
snmp-server community public
snmp-server enable traps snmp authentication linkup linkdown coldstart
crypto ipsec transform-set myset esp-des esp-md5-hmac
crypto dynamic-map dynmap 30 set transform-set myset
crypto map newmap 20 ipsec-isakmp dynamic dynmap
crypto map newmap interface outside
crypto isakmp identity address
crypto isakmp enable outside
crypto isakmp policy 10
authentication pre-share
encryption des
hash md5
group 2
lifetime 86400
crypto isakmp nat-traversal 10
telnet 10.127.1.0 255.255.255.0 inside
telnet 10.127.0.0 255.255.255.0 inside
telnet 10.8.0.0 255.255.255.0 inside
telnet 10.0.0.0 255.0.0.0 inside
telnet timeout 10
ssh 0.0.0.0 0.0.0.0 outside
ssh timeout 5
console timeout 0
dhcpd dns 10.8.183.247 10.127.240.248
dhcpd domain driveprestige.com
dhcpd auto_config outside
!
username admin password gpaVlXjmiQZdTpWl encrypted privilege 15
username bobby password KjluUKd.K5WNLVee encrypted privilege 15
!
class-map class_sip_tcp
match port tcp eq sip
class-map inspection_default
match default-inspection-traffic
!
!
policy-map type inspect dns preset_dns_map
parameters
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect h323 h225
inspect h323 ras
inspect http
inspect rsh
inspect rtsp
inspect skinny
inspect esmtp
inspect sqlnet
inspect tftp
class class_sip_tcp
inspect sip
!
service-policy global_policy global
prompt hostname context
Cryptochecksum:4791b6e145c
cbe5bcc2c3
834bd1b9cb
9
MB-FW# dir
Directory of disk0:/
2083 -rw- 4181246 07:05:44 May 26 2009 securedesktop-asa-3.2.1.10
3-k9.pk
g
3104 -rw- 398305 07:05:56 May 26 2009 sslclient-win-1.1.0.154.pk
g
4 -rw- 8515584 12:58:14 Jun 10 2009 asa724-k8.old
4794 drw- 0 07:07:24 May 26 2009 crypto_archive
4805 -rw- 7295568 11:32:46 Jun 10 2009 asdm-611.bin
3202 -rw- 6514852 11:35:52 Jun 10 2009 asdm-524.old
6587 -rw- 19666944 12:53:56 Jun 10 2009 asa811-smp-k8.bin
127111168 bytes total (80470016 bytes free)
MB-FW#
MB-FW# show ver
Cisco Adaptive Security Appliance Software Version 7.2(4)
Device Manager Version 6.1(1)
Compiled on Sun 06-Apr-08 13:39 by builders
System image file is "disk0:/asa724-k8.old"
Config file at boot was "startup-config"
MB-FW up 7 mins 47 secs
Hardware: ASA5505, 256 MB RAM, CPU Geode 500 MHz
Internal ATA Compact Flash, 128MB
BIOS Flash M50FW080 @ 0xffe00000, 1024KB
Encryption hardware device : Cisco ASA-5505 on-board accelerator (revision 0x0)
Boot microcode : ?CNlite-MC-Boot-Cisco-1.2
SSL/IKE microcode: ?CNlite-MC-IPSEC-Admin-3.0
3
IPSec microcode : ?CNlite-MC-IPSECm-MAIN-2.0
5
0: Int: Internal-Data0/0 : address is 0025.8454.c178, irq 11
1: Ext: Ethernet0/0 : address is 0025.8454.c170, irq 255
2: Ext: Ethernet0/1 : address is 0025.8454.c171, irq 255
3: Ext: Ethernet0/2 : address is 0025.8454.c172, irq 255
4: Ext: Ethernet0/3 : address is 0025.8454.c173, irq 255
5: Ext: Ethernet0/4 : address is 0025.8454.c174, irq 255
6: Ext: Ethernet0/5 : address is 0025.8454.c175, irq 255
7: Ext: Ethernet0/6 : address is 0025.8454.c176, irq 255
8: Ext: Ethernet0/7 : address is 0025.8454.c177, irq 255
9: Int: Internal-Data0/1 : address is 0000.0003.0002, irq 255
10: Int: Not used : irq 255
11: Int: Not used : irq 255
Licensed features for this platform:
Maximum Physical Interfaces : 8
VLANs : 20, DMZ Unrestricted
Inside Hosts : Unlimited
Failover : Active/Standby
VPN-DES : Enabled
VPN-3DES-AES : Disabled
VPN Peers : 25
WebVPN Peers : 2
Dual ISPs : Enabled
VLAN Trunk Ports : 8
This platform has an ASA 5505 Security Plus license.
Serial Number: xxxxxxxxxx
Running Activation Key: 0xd13edd4f 0x88e2d232 0x1c90618c 0xb2e4cc14 0x011b3cb1
Configuration register is 0x1
Configuration has not been modified since last system restart.
MB-FW#