Main Topics
Browse All Topics Hello,
I have a Cisco ASA 5505 firewall and when we try to access the firewall through a browser, it would go VPN page, but now it isn't loading anymore. A co-worker can access the firewall using a program called ASDM, but he does not have...
I am having an issue with a Dell laptop connecting to the Sonicwall VPN using the mobile broadband. I click to connect on the VPN, and it prompts me to select Select PhoneBook Entry. I tried to force it to use the LAN connection only, and then...
I don't know if it's possible, but it seems that it should be an option. I can't find a way to remotely restart/reboot a Cisco ASA 5510 Firewall? I've Googled and searched EE, but have found nothing.
I've just downloaded and configured (so i thought) squid. After plugging in proxy connection information on my browser, I receive the following error from the proxy server:
Error
The requested URL could not be retrieved
Access Denied
...
Hi,
I have configured a VPN on a Cisco ASA firewall, and my client software (Cisco VPN Client) is connecting with no problems. The split tunneling works, i.e. I can still browse the net on my own connection whilst connection, however, no...
Hi,
I'm trying to enable a SonicWALL Global VPN Client (v3.1.0.556) attaching to a TZ170 firewall. When I attach to the firewall via the client over the internet, the TZ170 is assigning an IP of 223.1.1.128 to the virtual adapter, which I...
I'm trying to get an IPSec VPN connection to work on iOS and android devices. I got it to work with PPTP using the Firebox Authentication, but I would like to do it with IPSec instead. I do not want to use PPTP with Radius. I have IPSec...
i am getting following error exactly after 120 seconds, when my web service takes longer than 120 seconds to respond! BUT if I use IP address : port instead of domain name, it does not time out (the specified port is not 80)
<title>502 Proxy...
Ok so here's the issue. I have a UTM-1 270 NGX R65 with VPN turned on. I am using the certificate method for authentication with the latest Secureclient installed (ver. NGX R60 HFA2 Build 002). A remote user can connect to the VPN using the...
Hi,
Have a question on the Cisco PIX or ASA firewalls.
On an IOS router you can break out of or stop the "show run" output of the router by pressing "escape" or "control-c". Is there a sequence of keys that you can use to do the same thing...
Hi experts,
Anybody out there know how to solidly block the software ultrasurf.
I am the administrator for my coporate firewall and we also have in place a bluecoat filtering system. Both are at my disposal to stop this little app from...
I'm trying to configure Serv-U to run in passive mode behind a Cisco ASA 5505. What is the proper way to do this?
My company is having lots of problems connecting to https sites. Lots of failed connection errors, resulting in really slow SSL sessions.
In the ISA 2004 logs I can see error msgs with :-
995 The I/O operation has been aborted because of...
I am having a problem with a VPN connection on a Sonicwall PRO 330. It seems to be failing at Phase 2 negotiation. If I click the renegotiate button for the VPN tunnel, I lose the tunnel.
If I change the Phase 2 Encryption/Authentication to...
I got 2 ASA 5505 and set them up for site to site VPN. But I can't get it work and seem like it is ISAKMP problem.
From the log:
4 Apr 12 2008 08:28:52 713903 IP = 1.1.1.1, Information Exchange processing failed
5 Apr 12 2008 08:28:52...
Hi Everyone,
We have an internal web server that is NATed to an external IP and it is accepting traffic for both port 80 and 443. I would like to find a way to redirect all port 80 traffic from the outside to go to port 443 on the web server...
We have just replaced our ISA Firewall Cluster with two Fortigate 110C units.
The FTP server runs FileZilla FTP Server, configured to use FTPS (TCP 990) as the command port and 50000-51000 as the data ports.
I have setup the Virtual IP's to...
I've installed a Fortigate 300A firewall device. Is it possible to use this device as a load balancer for my 2 internet lines ? something like what GLBP does.
Thanks
I need to open port 2187 for a user to connect to a webinar, but how do you go about opening a specific port in ISA?
Checkpoint VPN-1 & Firewall-1 NGX (R65) Build 427
Hi,
Following a power failure my checkpoint firewall running on windows 2000 server SP4 is refusing to push a policy. The rulebase in Smartdashboard looks intact, but when I try to push the...
This is an older device, but up until a couple of months ago was fairly reliable. Lately we're seeing a lot of both spam and legit inbound emails being "deferred" due to "timeouts". Some of the legit emails end up getting delivered hours later,...
hi,
i need assistance in configuring SSLVPN in fortigate 80c,
i configured the SSLVPN options, added IP pool , configured the firewall to allow traffic.. but it still doesn`t work
need assistance
thanks in advance
I have an existing network setup and need to implement this load balancer, but this thing is very complex with many modes of operation and features found on switches, routers and firewalls.
After several days of reading through documentation...
Hi
After many issues with this Certificates. I think i have correct all the problems, between Exchange and Certificates
Issues that i have asked in this threats.
...
Hi, I am having problem to setup site to site VPN between a Netgear FVG318 box and Sonicwall TZ170.
I have followed the manuals of both appliances but failed all the time. I have also searched out a KB article of Sonicwall talking about the...
Hello,
I am trying to connect to the Firebox in our office through WSM but I am unable to connect as of yesterday. I was trying to add it to the devices list in device management but was not having any luck.
Thanks!
Hello. We are having some trouble with our firewall.
Here goes :
We have a Sonicwall NSA 2400 updated to the latest firmware (SonicOS Enhanced 5.8.0.1-31o) providing internet connectivity to our lan users. However, at random interval,...
I am having an issue with a new build of the juniper OS and it has dumped some of my standard configs and it is not allowing me to access 2 web servers behind the unit.
I have 2 web servers running behind the juniper one is using the egress Ip...
Greetings,
I am trying to configure VPN with Juniper ssg20 and the netscreen remote app. Had a few queries regarding the same caz the one i setup seems to time out and not successful.
I want the vpn to terminate in the untrust zone and...
Hi,
I have ISA server 2004 and users are complaing about IE very going to websites, I turned on logging and a lot of dropped packets A non-SYN packet was dropped because it was sent by a source that does not have an established connection with...
Hi All
We configured a Fortigate 311B (in NAT. The fortigate is not directly connected to the internet. We use it to separate and analyze traffic between two different parts of our inside network.
Most of the traffic must be permitted...
I need help interpreting this alert log coming from my Firewall. I need to figure out what this Intrusion Prevention is.
At least 20 of these per hour:
Time: 05/07/2009 11:26:03
Priority: Alert
Category: Intrusion Prevention
Message: IP...
GETTING THE ATTACHED ERROR WHENEVER TRYING TO ACCESS THE ASDM...Please suggest
error:
UNABLE TO LAUNCH THE DEVICE MANAGER from 172.16.99.x
172.16.99.x --- ip address assigned to inside interface
it was working before but suddenly it...
I am completely frustrated with this setup. I've configured an ASA5510 (I've attached the running config below) to take the place of a Netscreen 25 that's currently in place. They are running consecutively now. When I unplug the Netscreen and...
Where can I download the current version of Netcat for Windows? I need it to test stuff on our network.
Dear , greeting ,,,
In our enterprise, we are going to apply SSH instead of TELNET for all CISCO equipments.
The procedure success for router , switches, and IPS. But unfortunately failed for PIX and ASA.
When execute PUTTY, a window...
What is the best firewall and do i need it when i use my computer extensively on the Internet with broadband access? I heard good things about zone alarm, black ice and trend Pccillian. Which one of these provides the best security?
Hello Experts -
What is the best practice for setting up NTP on a Cisco ASA 5505. I'm not looking for the commands just any tips you can provide for syncing the time of all PCs to a firewall. Also, are there any recommended public NTP...
Using a PIX 6.3(3) as VPN Server, with Win2k3 as RADIUS for XAUTH, and Cisco VPN Client 4.8. Everything works fine, except we don't want the users to have to type in their password to connect (this is the domain password I am talking about, not...
we had a new nokia IP 320 box with checkpoint NG with AI.
Our setup is: LAN->Firewall->Router.
Our LAN consists of Exchange server and ISA server in caching only mode. STATIC NAT is configured for ISA server and exchange server. Rule...
Hi,
I have a fortigate 60 firewall on our network restricting access to youtube for internal users.
I'm wondering how I can add exceptions to this so that some users can access youtube?
I have tried a couple of options based on source IP...
I just installed a new SonicWall TZ 100 Total Secure UTM firewall router.
I used the install wizard and it seems to be working fine.
I am unable to figure out how to configure VPN.
Our previous unit was a Snapgear with the user database on...
After using the ASDM wizard to setup the tunnel between two ASA 5510, I still cannot communicate between the local inside network and the remote inside network. Can anyone please take a look at my config and shed some knowledge my way. Thanks....
Hi,
We currently have two ASA 5505's on separate ISP's. One is a slower line meant for e-mail only traffic and the other is a high-bandwidth line for outbound internet access. If the high bandwidth line goes down, we would like the internet...
I have two hub transport servers, one running Ex2007 and the other Ex2010. All mail to and from the internet is routed through a TMG2010 server running Ex2010 EdgeSync service - i am using an edge subscription.
All has been fine for several...
Trying to configure a Cisco ASA 5510 to allow passive FTP and the connections are failing. Bellow is the configuration. How do you allow passive FTP on the ASA?
User Access Verification
Password:
Type help or '?' for a list of available...
Were moving from ISA 2006 to a Sonicwall TZ 210. I'm starting to work through the configurations but I'm stuck. We have about 30 static IP's that we need to setup, but I don't know how with this new device?
Thanks!
I have an ASA 5505, with running NAT/PAT with Vlan1 (inside) and Vlan2 (outside). Inside is connected to the LAN, Outside is connected to the Internet. This works fine, LAN hosts can access the Internet through the ASA.
I want to figure out...
Does anyone know how to telnet from a Cisco ASA5510?
How do I block streaming Audio and Video (especially Internet Radio) using the Cisco ASA 5505, while allowing a select few computers to have access to those services.
I am not only looking for a solution, but the IOS commands to make it work....
Hi,
Ive been struggling with getting a site to site VPN connection running between a Cisco ASA 5510 and a Draytek 2820 router for a few days now and I really starting to get frustrated with it!
The asa keeps reporting the following
Group =...
Could you kindly help me with the following questions:
1) Is there any flavour of the Cisco IOS on the 3750 or 3560 L3 switches that can do NAT ?
2) We are planning to replace an existing Linux machine running a huge number of iptables NAT...
My client has an old network with ADSL router configured as gateway (IP: 10.0.0.2/24). Other PCs in the network has different subnets 10.0.0.x/24 and 192.168.16.0/24 connected to normal D-Link switches (not managed). The Win 2K3 server address is...
i've a Watchguard Firebox XTM 530 configured for Internet access. It was working fine but sudenly one day started to block hotmail. The message in the browser is:
Response denied by WatchGuard HTTP proxy.
Reason: header 'Content-Type' denied...
I have a Sonicwall 2040 Pro with the latest Standard OS. I've been working on setting up VPN access with it. Everything is connecting fine but once I'm connected certain computers can't be pinged or browse by doing \\192.x.x.x. or...
Hi,
Issue:
Whenever I try to access one of my published ressources from an external network, I get an error: Error Code: 408. The operation timed out
Configuration (simplified for visibility)
Internet-FW1-DMZ (web/ftp...
Dear Experts!!
Before I start, I would like to mention that I tried the solution from an expert article "Q_21483635.html", but no luck. We have even opened a case with Microsoft PSS, and its been 10days now without any breakthrough. We have an...
I have created a VPN connection in a a windows XP, and put its shortcut in Startup Program. Now the user must log on for the VPN connection to run automatically.
What I want now is to make the VPN connection run automatically when windows...
Is there a way to reset the PIX 515 to factory default settings? Thanks.
So here goes, I'm a Juniper newbie, but have to learn it because of a new job.
I have inherited a NS5GT, with it currently configured in port mode DMZ-DUAL-UNTRUST
Don't get me started on the eth config names, just know that I have them...
NTP is not syncing to an external host. Previously it was fine but it has not synched since August 4. We allow ntp traffic through our ASA firewall but it has not been able to sync from our core switch/router (3750G) for a long time.
Any help...
I can export the configuration file, However the resultant text file is unreadable. Example of a portion:
...
I need to do port forwarding on ISA 2004, please help me i need it urgently.
Hi guys...
We have an Active/Standby ASA 5540 failover cluster. Few months back, the secondary unit became active automatically while the primary went into 'Standby Ready' mode. Now, whenever we try to make the primary Active either by giving...
Hi everyone,
I've been using Forigates for quite a few years. Same goes for Mail relays(2003 Servers using IIS relay, Argosoft mail servers, even XP Pro based machines with IIS, Alldain's Esafe versions), reverse proxies(for OWA, don't know to...
During my installation of Checkpoint SecureRemote (downloaded from http://www.checkpoint.com/
I am adding DRAM and COMPACT flash to my ASA 5510. DRAM recognizes fine but the compact flash seems to be intermittent.
The internal 256mb compact flash is recognized, and about every 3 reboot, the 512 compact flash is as well.
If there is...
Situation: (this is more a question than needing help on a config)
<--------------VPN TUNNEL--------------->
Remote PIX-------NAT Device/INTERNET-----------
I'm currently troubleshooting a VPN tunnel between two...
I have a brand new NetScreen 5GT that I am trying to configure and am looking for help. I have never configured one of these before, though I know about other routers.
I am trying to accomplish two things:
1) open ports such as 3389 and...
We have a Sonicwall 2400 and unfortunately it is managed by another company and I don't have access. But what I do want to know from those of you who are familiar with these firewalls... are there any known issues with the filter? I will have a...
I have a Cisco 5505 that I am hoping allows for port mirroring on the built in switch ports. Do you know if this is possible? And if so, how is it configured?
Basically I am attempting to monitor the bandwidth on my network since the inbound...
Can someone tell me how to change passwords for users and administrators in FW-1 NG? Specifically, I need to know how to do it in Solaris. The 3.x and 4.x stuff had it in a menu by running ./cpconfig, but that doesn't appear to have an entry...
I just installed a new X550e firebox, and now users are not able to download java script, or even java exe (I even tried downloading directly from the sun/java website)....I've searched Watchguard tech support site, and followed the 'allow...
Could someone please help with a beginner cisco 877 question
We have a cisco 877 configured as a ADSL gateway. The suppliers have been requested to port forward a server with the address 192.168.1.4 on 22 so that we have SSH access from the...
I am busy trying to setup a IPSEC tunnel between a TZ170 with enhanced OS and a Draytek 2820. I have input the settings on both ends and the tunnel passes phase 1 but then fails on phase two. I have tried all combinations and I am getting...
I need to enable VPN passthrough on our ASA 5510.
To be more specific, we have machines located on our inside private (NAT) network that need to use the Cisco VPN client to connect to remote Cisco VPN servers. At the moment they cannot do...
For some reason I am unable to get back into my watchguard x500, For some reason the password is not working, is there a way to reset this box back to default , if so how ? or is there a way to find out the password. . help Please!~
I have working a VPN using Cisco PIX 501 running 6.3 code and a Cisco 3640 router. I'm have purchased a brand new ASA 5505 to connect to the Cisco 3640 and I can't even bring up the tunnel. The manual does say that it only comes with a DES...
I've been informed that I need to forward port 3389 to one of my private IPs to get Microsoft's Remote Desktop software to function. I'm running a WatchGuard Firebox System 5.0, and the manual isn't giving me much information as to how to do it....
I caanot seem to get my netscreen remote to make a connection. It's like trying to connect to the CIA. I followed instructions from articles, step-by-step instructions ... you name it I read it. I do not understand this firewall and I need...
Dear Experts,
1)How can we do to delete/reset caching on isa 2004?
1)How can we do to delete/reset Logging on isa 2004 ?
thanks,
KFNA
I'm learning the ASA 5500 Series on the fly. I need to configure the device to allow video teleconferencing (VTC). PolyCom states that they need port 1720 tcp, ports 3230-3243 tcp, and ports 3230-3285 upd.
I added some access lists and now...
So I created an RODC on the DMZ, however, I am no trying to lock down the firewall rules and only open the required ports.
The MSFT KB: http://support.microsoft.c
49152 -65535/UDP	123/UDP	W
49152...
Hello,
I have two ASA 5510 in a failover setup and these devices need a IOS and ASDM upgrade. I have the correct IOS and ASDM software files and I recieved the following link from Cisco about how to perform the upgrade. See link below:...
Hello All,
I am charged with the task of finding a solution to monitor inbound/outbound bandwidth on a number (10 and growing) of site to site IPSEC VPN connections on a Cisco ASA 5520. Currently I'm using PRTG and have imported the...
i have configured fortigate 80c. but i have to take users from domain controller or from windows active directory services. how to do it?
My company just bought a Cisco ASA 5510 with the SSM-10 module. I'm familiar with Cisco PIX and have all the firewall parts of the ASA configured. But I'm unfamiliar with the SSM-10 module. I've got the basics configured (IP address, login...
Hi All,
I have FortiGate firewall 100A. It is working fine, but since couple of weeks we started facing problems.
Some computer are not able to communicate with external server on a specific port, the firewall is allowing some data to get...
Hello!
I am wondering: I have a FortiGate 100 appliance as a firewall. I use Intuit Network Monitor to monitor my network. I created a monitor for incoming bandwidth usage in NM. Occasionally, I see large spikes in my incoming bandwidth...
I'm having route problems with our remote site, using a TZ 170 < http://pg.photos.yahoo.com
On our Main site (2040), I added a static route to the 2040 to route...
I want to create a Visio diagram to better display the firewall rules I've set up on my Cisco PIX 500 series of Firewall equipment. Other than the cutesy wall with a fire, are there any other useful Visio stencils out there that would help with...
being new to firewalls and proxy servers i have a small network with limited bandwidth for the internet and was wondereing how to configure my Cisco ASA5505 using ASDM software to block certain bandwidth hungry sites that seem to be popular...
I am trying to configure my ASA for Remote Client VPN Usage thru the CLI. I am having trouble figuring out where I am going wrong. Here is what I did: Am I missing an entry somewhere .. not sure as the ASDM seems to junk up my config when I do...
My goal is extremely simple. I am trying to configure a port forward on a Cisco ASA 5510. I have been told to save myself some headache to use the ASDM on this device. I am running ASDM v5.1 with an ASA 5510 v7.1(2). I have run through the...
I connect to a client that uses Cisco's Anyconnect VPN. When I connect, the anyconnect overrides my default gateway, forcing all of my internet traffic thru them. With the VPN client built in to Windows, I could uncheck "use default gateway on...
I currently have a pair of Cisco ASA5510's that are in active/standby.
They are both running security plus and version 8.04 and ASDM 6.1551.
What is the proper way to upgrade the pair? I already have TFTP'd the .bin files to Disk0: on...
Hi
I have problems with my Sonicwall Tz190W for over 2 weeks that drive me nuts.
I have for over one year two External IP from my ISP provider and it work fine until last week.
The reason I have two IP is that one is for the WAN interface that...
We just added and configured a new Cisco ASA 5510. The VPN worked for a few days. Now, it doesn’t work (it may be some configurations changed). Whenever the VPN client (v3.6) tries to access the VPN, it displays the login screen. After entering...
I'm trying to remove a Websense server from the ASA configuration. It won't allow me. It keeps stating the following: "Please remove url-block command before removing url-server"
As far as I know, I have removed all statements regarding the...
Hi Experts,
One of the user in my company needs to access a checkpoint VPN, however everytime after he typed in the username and password, IE prompts him an error message:
"SSL Network Extender Service is down and could not be started....
fgasimzade
2,800
0 points yesterday
ProfileSettleman
2,000
0 points yesterday
Profilechakko
1,336
0 points yesterday
Profilefmarshall
1,000
0 points yesterday
Profileajaparih
1,000
0 points yesterday
Profilejakob_di
664
0 points yesterday
Profile