Cisco Security :: ASA 5505 Security Plus Licensing?

May 24, 2011

I have a ASA 5505 that I test with which originally came with the Security Plus license. I recently erased flash and loaded the latest asa841-k8.bin version of IOS along with asdm-642.bin. Everything booted fine and came up as it does when freshly wiped however I noticed that i was now only running a base license. If I issue the sh activiation-key command, I noticed the following messages (full output is at the bottom):
 
The Running Activation Key is not valid, using default setting
......
This platform has a Base license.
......
Failed to retrieve flash permanent activation key

 Did I somehow kill my Security Plus licensing when I did the erase flash? If so how do I recover it? 
 
ciscoasa# sh activation-key
Serial Number:  JMXXXXXXHU
Running Permanent Activation Key: 0x00000000 0x00000000 0x00000000 0x00000000 0x00000000

The Running Activation Key is not valid, using default settings:
 
Licensed features for this platform:
Maximum Physical Interfaces       : 8              perpetual
VLANs                             : 3              DMZ Restricted
Dual ISPs                         : Disabled       perpetual
VLAN Trunk Ports                  : 0              perpetual

[code]...

 This platform has a Base license.Failed to retrieve flash permanent activation key.The flash permanent activation key is the SAME as the running permanent key.

View 2 Replies


ADVERTISEMENT

Cisco Security :: Finding Security Labs For GNS3 Or Packet Tracer?

Dec 19, 2011

I'm studying for CCNA Sec exam and looking for any security labs for GNS3 or Packet Tracer.

View 3 Replies View Related

Cisco Security :: Configure 802.1X Security Through ACS 1120 Server And NAC In Layer 2 Inband Virtual Gateway?

Feb 28, 2011

My company ordered NAC and ACS 1120 My question is Can i configure 802.1X security through ACS server and NAC in layer 2 Inband Virtual Gateway.for campus switches.Is it the good design to have double security for switch ports. 1st is 802.1X and 2nd is NAC in layer 2 INBAND VG?

View 1 Replies View Related

Cisco Security :: How Many Default Context In ASA 5510 Security Plus Edition

Aug 8, 2006

ASA 5510 security plus edition will it support active/active failover. and does it support context with securiyt plsu edition. and how many default context do we get with asa 5510 security plus edition.

View 3 Replies View Related

Linksys WRT610N Wireless System With WPA-PSK Security / Security Settings Does Not Match

Mar 29, 2012

I have a Linksys WRT610N wireless system with WPA-PSK security and this works fine with several computers but now one computer detects the wireless security as WEP and can thus not connect to the router. I have tried to manually connect to the router with correct security WPA-Personal (TKIP) and correct password but then the computer says "settings saved on this computer for the network do not match the requirements of the network".How can I get the computer to detect the correct security? The computer is running Windows 7 home premium.

View 7 Replies View Related

Security / Firewalls :: FCC Is Investigating Pogo Game Site Because Of Poor Security

Mar 24, 2013

Is it true that the FCC is investigating the Pogo game site because of poor security? Is Java the cause of this problem?I'm very leery of getting on the Pogo site because I've been told that my computer could get a virus and crash.

View 1 Replies View Related

Security / Firewalls :: Sonicwall Network Security Appliance - Receiving A Content Blocked Message?

Dec 24, 2011

I'm new to IT, and have been put in charge of managing our servers hile my boss is on vacation.We currently have a Sonicwall Network Security Appliance that handles our Firewall/VPN and have web content filtering set in place.I have a user who belongs to 2 CFS policy groups that we have set up. I've double checked with Active Directory, and he is a member of both groups.

This person SHOULD have access to Job searches/ and Restaurants,but receives a "content blocked" message on his browser.It appears to me that the settings in Sonicwall are correct, as well with AD member groups.

View 3 Replies View Related

Security / Firewalls :: Connecting To A Security-enabled Wireless Network?

Jan 19, 2013

I am trying to connect to a Security-enabled wireless netowork. I have the key. My problem is that I can't seem to figure out how to enter it. When I try to connect I open the "view available networks"window. I see the network name and it shows a strong signal (all 5 green bars).

View 3 Replies View Related

Cisco :: ASA 5505 Same Security Level Traffic?

Jun 27, 2011

I have ASA 5505 that has two inside security level 100 interfaces and an outside interface.On the inside interface we have corporate domain subnet with DC and 30 hosts. On the inside2 interface I have few servers that runs specific application important for our business needs, and dumb terminals that are connected to them.I have a laptop user that periodically needs access from our corporate vlan1 to one of the servers on inside 2 vlan via remote desktop or some other remote viewer client,so he can view reports etc.I have enabled same-security-traffic intra-interface command and added nat exempt command pointing specific laptop host machine to that specific server.

Now my main concern is regarding security. This user carries his laptop home, browses the web, puts USB memory, and you can imagine how this machine is susceptible to all kind of malicious software. Inside2 vlan is very important and until now it has been a very secure environment.This is no longer the case since all traffic between this inside sec level 100 vlan host and corresponding inside2 sec level 100 server is now allowed because of the enabled same level interface traffic and nat exemption rule. Do I have another solution that would allow communication based on just a tcp port number for this host? Something like port forwarding from outside to inside Vlan interface?

View 10 Replies View Related

Cisco Security :: Save Configuration In ASA 5505?

Oct 23, 2011

I save the configuration in the ASA 5505 using write memory or using copy run start but whe i unplug the power cord and plug it back in the ASA gets its factory default configuration.. then what i do is a copy start run to get the configuration active..

View 2 Replies View Related

Cisco VPN :: How Many VLans ASA 5505 Security Plus Support

Nov 18, 2011

i have asa 5505 adaptive security plus. and  i have only 3 vlans . outside , inside , DMZ restricted.so it's working fine but i want to connect to my inside another private network,  or do  i need to buy License.and how i can activate the license key.

View 4 Replies View Related

Cisco Security :: Restoring ASA 5505 Configuration?

Jul 3, 2011

I have got a working 5505 running 8.3.1 firmware and 6.3.1 ASDM.I have now purchased a second unit and ensured that both units are running the same firmware levels etc.
 
I have via the ASDM created a backup of the working units configuration, and now i want to load this configuration onto the second unit.I have connected the consiole cable up to the second unit and tried pasting in the contents of the configuration file but no joy.I want to ensure that my configuration will work on this unit before i configure the two units in Active/Passiove configuration.

View 1 Replies View Related

Cisco Firewall :: ASA 5505 Security Plus Dual ISP

Apr 5, 2010

I have an ASA5505 with Security Plus license so I can have many interfaces (not 2 + 1 limited DMZ like in base license)
 
I have 2 VLANs.Is it possible to use one ISP for VLAN 1 and other for VLAN 2 ? Is it limited to 2 ISP's or can have more ?

View 14 Replies View Related

Cisco Security :: ASA 5505 For Remote Access VPN

Dec 21, 2012

I try to configure my CISCO ASA 5505 for remote access vpn, and I encounter the following issue : Secure VPN Connection terminated locally by the Client. Reason 412: The remote peer is no longer responding. [code]

View 2 Replies View Related

Cisco Security :: Configuration - Moving From PIX To ASA 5505 V8.2?

Feb 15, 2012

I used my Pix config to setup the ASA 5505.Everything seems to be right. I used ASDM to view settings and it seems right. I am missing something minor, but I am going blind looking at it.
 
I can remote into the network from outside, but internatlly I cannot get out of network.  No internet or email is passing through.
 
: Saved
:
ASA Version 8.2(5)
!
hostname textasa
domain-name testcorp.com
enable password 579oWRzSY5syo9yt encrypted
passwd 579oWRzSY5syo9yt encrypted

[code]....

View 5 Replies View Related

Cisco Security :: ASA 5505 - Stops Before ROMmon

May 9, 2011

I have a ASA 5505 which stops pretty early in the boot sequence.
 
This is all that shows up,
 
CISCO SYSTEMS
Embedded BIOS Version 1.0(12)13 08/28/08 15:50:37.45
Low Memory: 632 KB

[Code].....

View 1 Replies View Related

Cisco Security :: 1 Website Blocked Under ASA 5505

Jun 1, 2011

I have had the ASA 5505 set up for over 5 years, no problems.  For some reason there is one website that my users cannot access. [url].... (173.161.122.9). Why it is being blocked. 

[code]....

View 5 Replies View Related

Cisco Security :: 5505 - No Access To ADSM

Feb 19, 2013

I still can't access ASDM. I deleted the old ASDM versions and upgraded to ASDM 7.1(1)52 which shows compatible with ASA 8.2(1). I'm on an inside NAT address connected to Eth 0/5, 192.168.1.5/24. I can ping and SSH to the FW but no ASDM. Following is passing traffic and everything else works just fine.

JEREMY-ASA# show ver
Cisco Adaptive Security Appliance Software Version 8.2(1) Device Manager Version 7.1(1)52
JEREMY-ASA# show run asdm
asdm image disk0:/asdm-711-52.bin
no asdm history enable
[Code]...

View 4 Replies View Related

Cisco Security :: ASA 5505 - NAT To 2 Private IP Addresses

Apr 22, 2012

I am new to networking and configuring a ASA 5505.  I have one public IP and would like to know if I can Nat this ip to 2 private IP addresses.  Both addresses will be passing similar traffic.

View 1 Replies View Related

Security / Firewalls :: Install Microsoft Security Essential On PC?

Sep 15, 2012

I want to install Microsoft Security Essential on my PC, but I am not sure which download I need. One says amd64 and the other is x86. I am using windows xp 32bit.

View 2 Replies View Related

Security / Firewalls :: Security Tools And Techniques For Wireless LAN?

Apr 20, 2013

Some security tools and techniques for wireless LAN??

View 1 Replies View Related

Cisco Security :: ASA 5505 Needs VPN Outbound Unblocked Via Gui Interface

May 7, 2012

How can I achieve this.  I am obviously a novice cisco user and really fight my way around.  I just want to grant access to a vendor to connect to his vpn.  What ports need opened and what else do I need to do?

View 1 Replies View Related

Cisco Firewall :: ASA 5505 Security Plus License Upgrade?

Apr 19, 2012

We want to upgrade one of our Cisco 5505 with Security Plus license. what is the difference between L-ASA5505-SEC-PL and ASA5505-SEC-PL upgrade licenses?

View 1 Replies View Related

Cisco Security :: Add Smartnet Contract Numbers For Asa 5505

Apr 29, 2012

I have bought 2 new ASA5505 with SmartNet contract.  I already have my 2 SmarNet contract number.  Now I want to add these 2 contracts to my TAC account, so I can have support for my 2 new products.  My TAC account already have 1 SmartNet contract for another device I have.What is the procedure to add my SmartNet contract to my account?

View 2 Replies View Related

Cisco WAN :: Replace A ASA 5505 With 2801 With Security Bundle

Dec 21, 2011

I'm trying to replace a ASA 5505 with a Cisco 2801 w/ security bundle.I have gone through a pretty basic set up of configuring what I could and letting the Cisco Config Prof do the security audit to lock it down. I have everything working just fine except for the bandwidth.
 
As soon as I plug the router in it seems to give all the bandwidth to one computer and the rest of the campus slows down to a crawl.I turned on "fair-queue" and even tried the QoS wizard in CCP, but it seems like thats if you want to prioritize voice over data - which we aren't running VOIP so I don't need.

View 7 Replies View Related

Cisco :: 5505 - How To Hide SSID And General Security

Oct 11, 2012

how to hide Wireless SSID via Wireless controllers (one I am using is 5505)
 
Currently anyone can attmept to login to it as i cant find any options to hide it! Screen shot below)
 
what measures I should take to secure the APS and from access, currently considering port security and static mac addresses on ports; traffic is already got ACLS on its vlan. I have little to no experience on Wireless devices.

View 10 Replies View Related

Cisco Security :: Configuring ASA 5505 Port Forwarding?

Apr 19, 2013

I have a Cisco home rack lab which is behind my ASA 5505. I use my ASA to connect to the internet. My situation is I travel a lot for work, and I am unable to do my labbing practice. I am pretty new to ASA and would like to do a port forwarding to access my access server which is connected to my Cisco routers and switches.My network topology is this: (internet)-------(ASA 5505)----------(3550)-------(CM32 Access Server)----------(Cisco Rack) This is how I setup my remote access:
 
Code: 
ssh 0.0.0.0 0.0.0.0 outside

View 8 Replies View Related

Cisco Security :: Software Updates In ASDM On ASA 5505

Mar 6, 2011

When I run the Upgrade software from Cisoc.com Wizard in ASDM i get this error:
 
You are not authorized to download encrypted software. Please register your self for this service.

CRYPTO_REQUEST_URL

View 1 Replies View Related

Cisco Security :: ASA 5505 8.41 Dynamic NAT / Static Configuration

Apr 17, 2011

I'm having some issues configuring NAT statements on my ASA5505 which has recently been upgraded to 8.41.
 
I have a single dynamic IP on the outside interface of the ASA and would like all internal hosts to NAT/PAT to it. In addition, I would like to have several ports 'forwarded' to internal hosts, one of which is TCP/4343. With the current configuration all hosts are NATing to the external interface properly but the service running on TCP/4343 is not accessible from the outside. See command output below:
 
"sh run object" output:
object network DrJones host 10.81.220.90object network LAN-10.81.220.0 subnet 10.81.220.0 255.255.255.0
"sh run nat" output:
object network DrJones nat (inside,outside) static interface service tcp 4343 4343object network LAN-10.81.220.0 nat (inside,outside) dynamic interface
"sh run access-list" output:
access-list inside_access_in extended permit ip 10.81.220.0 255.255.255.0 anyaccess-list outside_access_in extended permit icmp any any echo-replyaccess-list outside_access_in extended permit tcp any interface outside eq 4343

View 6 Replies View Related

Cisco Security :: ASA IOS 8.3 Local CA Security Vulnerability?

Apr 9, 2011

I was informed by a co-worker that there is a security vulnerability with the local certificate authority in the ASA running 8.3 code. I've looked through the security advisories and haven't been able to find anything about this. Was this just misquote or am I missing the security advisory release?

View 1 Replies View Related

Cisco Security :: ASA-5505 - Getting Home Users Internet Access?

Feb 28, 2013

I have configured and tested an ASA-5505 that will be deployed at a customer's home.  The ISP cable modem will connect to the E0 (outside) interface of the ASA.  All other interfaces on the ASA are configured for the inside network 192.168.5.0/24. I have created a VPN site-to-site tunnel between this ASA and the UC540 to allow 192.168.5.0/24 subnet access to the internal networks on the UC540. 

 The user has requested that all the network devices used by the rest of the family will only need to connect to the Internet.  They will not need access to the VPN tunnel and they will not need access to the computers on the 192.168.5.0/24 inside network.  I was planning on performing the following tasks to get this to work.

View 2 Replies View Related

Cisco Firewall :: 5505 With Security Plus Or 891 Integrated Service Router

Mar 15, 2011

Have a customer who has two ISPs right now and only using one through a basic SOHO router. Looking to upgrade to something that supports dual WAN and allows connections from outside in on both WAN ports. There are 25-30 inside hosts.Requirements: Allow incoming connections on BOTH WAN ports to a single inside host

-This is a web app that needs as close to 100% uptime as possible
-Round robin DNS is set up
-Failover for internal people should one of the ISPs go down
 
Looking at either an ASA 5505 with Security Plus or an 891 Integrated Service Router.

View 1 Replies View Related

Cisco Security :: 5505 Outside Traffic Not Destined For Outside Address Showing Up

Apr 11, 2011

why I would be getting traffic on my outside interface that has a destination address which is not my assigned outside address? I recently set up my ASA 5505 on the network and gave it an available outside address of say 192.x.x.250 on interface vlan 100. When I assign vlan 100 to e0/0 and bring the port up, I start seeing lots of traffic pour into the ASDM Syslog with various destinations belonging to my subnet but that are not actually destined for my specific outside address of 192.x.x.250.They are showing a destination of say 192.x.x.85 or 192.x.x.29.

View 3 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved