Selecting A Router To Configure As A Firewall?
Feb 22, 2013I am researching routers for a large emnterprise application, and their useability as firewalls. Also, is their one that is considered to be better over another?
View 3 RepliesI am researching routers for a large emnterprise application, and their useability as firewalls. Also, is their one that is considered to be better over another?
View 3 RepliesTrying to select a router that will work well networking a computer with a nettalk duo, on a limited bandwidth connection: .3/3Mbps up/down. From what little I've been able to find on this, QoS bandwidth control seems critical, yet the list of recommended routers from Nettalk seems to favor routers that don't have this feature. On the other hand, the list apparently hasn't been updated in a year and a half.
View 5 Replies View RelatedI would like to upgrade my older router to a new one that I can connect my laser printer and storage via USB. I was looking at the Belkin N750, but it seems to get bad reviews. Is there another router that someone would recommend that has 2 USB ports (one for printer and one for storage)?
View 1 Replies View RelatedI recently got a cable modem. It is Netgear CBC-382d1. It has one ethernet port and no wireless.I have 3 laptops (one will be using ethernet not wireless), 2 iphones, 1 ipad and a PS3 that needs to go online. All but one laptop are wireless. Which 300 Mbps wireless 4 port ethernet router is recommended?
View 5 Replies View RelatedBEFSR81 v3.0.I selecting Enabled UPnP and now I cannot access the router. When I enter the default admin for the password in the Authentication Required screen. I get the following screen: 401 Authorization RequiredThis server could not verify that you are authorized to access. Either you supplied the wrong credentials(e.g., bad password), or your browser doesn't understand how to supply the credentials required.I didn't enter anything new into the username or password fields.
View 5 Replies View RelatedI have an E3000 Dual Band. On my 5Ghz channel, I can select Auto(DFS) or I can manually select a channel.First of all, what does the DFS stand for? My 2.4 GhZ channel only has Auto, not Auto(DFS).
Second, when I select Auto(DFS), my wireless speed defaults to 144Mbps, and is only a single channel (I can see it in the in SSIDer utility). When I manually select a channel, no matter what channel it is, I get 300mbps and I can see that the signal is two channels (for instance, 36+40). Why Auto(DFS) doesn't automatically select the best channel and fastest speed?
I have a SRP547W which I'm trying to replicate a configuration I had on an old Cisco 847 that recently died.
My ISP has allocated me a /29. The DSL configuration means that the IP address on the PPP session is assigned randomly. I have a mix of internal devices on a private IP range and a few devices with publically accessible addresses. All of the devices on the internal network need to be NATted to a public IP from the range allocated to me.
I can see that I can use the software or hardware DMZ to set up the servers, but I can't see any way to configure the external NAT address.
I look after 5 sites in total.All sites are connected together via MPLS. Two of the sites, HQ1 and HQ2 are also connected together via 1Gb Metro so traffic is just switched between the 2 networks.EIGRP is fed into BGP to pass the routes between the sites with all sites in the same EIGRP AS.
All sites are configured with the same AS number (55555) and connect into the same service provider network so each site is connecting to a neighbor in the same AS (444).
I want all incoming traffic from the 3 sites to come in through HQ1 always. Can I influence the service provider's network to make sure this happens? Is this done via "set local-preference 20" on my side or do I have to get the service provider to make changes on their side too.
Here is the pertinent information first...
Windows 7
Cisco AnyConnect SecureMobility Client 3.0.4235
Cisco ASA 5510 firewall 8.2
The problem is.....When I log in, the client does its start-up bit, and then displays a "This certificate is intended for the following purpose(s):" message. If I decline the certificate, it gives me the error message shown in the image, but I can otherwise continue and establish my VPNs with no problem.
Unfortunately, the certificate it selects has nothing to do with my organization ( in fact, the certificate is for "*.whitepages.com" - see images). To make matters worse, I can not find this referenced certificate anywhere under my user context in Windows.
I have tried removing, rebooting, and re-installing - it does no good.How do I force the client to stop using this incorrect certificate, and to at least use one that belongs to my organization?
I have a Dell E6420 running WIN7 32bit. It is running the Dell broadband utility. I am trying to find a way to keep the users from selecting auto-connect in settings>config. I am looking for a registry key or something that can be done from the admin side to stop this.
View 3 Replies View RelatedI am having anyconnect version 3.1.03103, windows7 & 8 and asa 5520 (8.4). I have gone through alot of work to solve this issue but it not hapening. On clientless ssl vpn it prompts me for manual certificate selection but on anyconnect client it is not. profile configuration is mentioned below. In the highlighted line below i have changed UserControllable="true" still no results.
<?xml version="1.0" encoding="UTF-8"?>
-<AnyConnectProfile xsi:schemaLocation="[URL]" xmlns:xsi="[URL]" xmlns="[URL]">-<ClientInitialization>
[Code]....
Configuring Cisco 1841 router and firewall.My provider has put their equipment and given me 2 subnets with public ip address. I am used to getting just one Subnet and connecting my firewall straight to the hand off. But in this case I am a bit confused. I assume I will need to put a router and configure it with before I connect my firewall. [code] I also have a firewall that I would like to be on the subnet 2 at 200.xxx.97.130 and have my private network 192.168.xxx.xxx behind it.
View 2 Replies View RelatedI am new to firewalls and I am trying to make mine block specific websites but so far have had no success. Here are the settings I am using in the router's admin area:
Security > Firewall > General
Active firewall
Security > Firewall > Rules
[Code].....
I'm configuring a Cisco 877 router as my firewall.My WAN IP will be assigned dynamically with DHCP. I will also get my default route from DHCP.I will need to configure ip inspection and packet filtering.I will need to configure NAT, I will eventually need to also configure a dial-up VPN.
View 7 Replies View RelatedI have Zone Based Firewall running on a 2821 router and would like to configure Url Filtering with Websence . IOS running on that device is c2800nm-adverterprisek9-mz.150-1.M7.bin . Once you have ZBF config you cant configure url-filtering using classic way ( ip inspect ) and this has to be done using class , policy maps .For this to to happen it is required to have match protocol http command under the class map , it wont work using the match access-group command.[code]
Once I put match protocol http command browsing becomes dead slow , also without using match protocol command I cant continue to configure Url Filtering . Is this a problem related to IOS where match protocol command isnt working fine . I have checked CPU utlization of Router and it was roughly near 7 percent .
how to configure a router 2900 to support connection from 2 firewall ( Active Standby connections) How can i said the router to send the traffic to the stand by when it go down the active Firewall?I was planning to use a Switch ( layer 2 capacity only) in the middle of the equipments ( between the firewalls and the router) in order to send always the traffic for 1 physical interface from the router side , and manage to route all the internatl traffic to the virtual IP of both Firewalls.Also i dont know yet how to configure a VPN site to site if i have that scheme and some Publics NAT ( Firewall - Switch - Router ), i was planning to configure a NAT in the Router in order to allow the VPN traffic to internal IP of the Firewall but still dont know if it will work.
View 2 Replies View RelatedCurrently I have an ASA setup as a Firewall with 1 outside interface and 2 inside interfaces. Initially, the Guest interface was setup to receive DHCP from the ASA and everything was working. I'm adding router and a server for the guest interface and what I'm trying to accomplish now is the following: ASA 5505 > Airport Extreme with a public static IP (69.xx.xx.6), handling DHCP and NAT > Mac Server as DNS Server.Right now, when I connect to my Airport Extreme with any computer, I don't have internet. I don't understand what's wrong. My DNS Server has a reserved IP address: 192.168.226.2 and it's pointing to itself and forwarding the ISP DNS servers, the Airport Extreme is handling the DNS Server IP and the ISP DNS Server IP but I can't connect to the internet from the server. [code]
View 31 Replies View RelatedI have one Cisco ASA 5510 with 2611 router two 2960 switch how to configure.
View 1 Replies View RelatedI am in a situation where I share internet access with roommates. We have a Gateway which is conected to the provider and which delivers ethernet and WiFi signal.
In order to isolate myself from my roomates and to protect my network connection, both wired and WiFi, I would like to plug in the Ethernet cable I get from the Gateway to my router, and then configure my router's firewall and WiFi enctryption to maximize my safety.
However, I am having some problems. I have already configured the router as "router" and not "Gateway" and I am trying to assign it an IP address different from the default one, which is the one the gateway has, and a ranger of DHCP IP's, also different from those of the Gateway. In other words, 192.1681.N.1 for the router and start from there.
This is my first time to use the Cisco ASA 5500 family. I have a request from a user to create an access rule, to allow all LAN traffic to Destination IP address 165.241.29.17, 165.241.31.254 with Destination TCP port 5060,5061,5070 and UDP port 50000-52399.
View 9 Replies View RelatedI'm using windows XP Pro , in a local Lan, internet connection through a DHCP, and System software on IP 192.168.0.254. I'm the Admin of my PC, I just want to use the Internet and the System program. I want to block any user from accessing my PC or viewing my Processes by other programs like (Ideal Admin.). How to configure the AVG Firewall to do that ??
View 11 Replies View RelatedWe heard that ASA ver 8.4 has PBR. Do we have some guidelines on how to configure PBR for ASA and can it do routing based on URL?
View 2 Replies View RelatedHow to assign NAT IP to server from Firewall
View 2 Replies View RelatedHow to configure ASA failover for 8.4.
View 1 Replies View RelatedI'm having a problem configuring an ASA 5510. A previous employee started the config and left abruptly. He established a VPN Tunnel between two of our sites and that's working without an issue. The problem is, the network behind the 5510 at the remote location cannot access the internet.
ASA Version 8.2(1)
!
hostname PH-Firewall
domain-name pleasehelpme.com
enable password HXrQty4kqW8s8yeE encrypted
passwd ucA.qrYJWD9UyIFz encrypted
names
[code]....
I have a asa 5505 Sec plus with 3vlan, inside, outside and dmz.
On the outside i have 5 ip's for my use, and in the dmz i have a webserver that need to communicate with one sql server on the inside.
The "sql" also needs to be accessible from outside and thus has a static nat with a dynamic nat so it replies from same ip as on nat ie 72.72.72.5 webserver is natted with 72.72.72.6
sql inside ip is 192.168.1.2, gw 192.168.1.1
webserver ip is 192.168.2.100 gw 192.168.2.1
sec lvl on inside is 100 and on dmz 50
with a dynamic policy running inside-net/24 to dmz-network/24 translagt to dmz 192.168.2.2 i can get it to ping 1 way from inside to dmz, but not the other way around...
All i need is to open 1 port ie 6677 both ways for this communication to work.
I'm not very familiar with the CLI and do most stuf in GUI (know i should learn CLI, but time doesnt let me)...
on access rules i have just added everything from any to any using , ip, icmp, tcp and udp just to be sure... :-)
I am confiuging a DMZ on my ASA 5510 but I have run out of physical ports, since I have dual Wan ports configured. I plan to implement a DMZ using subinterfaces. I have 2 questions:
1) Do I need to configure a Vlan to complete this task?
2) Do I need to re-configure the other interfaces for subinterfaces and/or vlans as well?
Do you know how to configure PAT on Cisco ASA 5545x?
View 2 Replies View RelatedWe have Cisco ASA 5520 firewall. ASA Version - 8.0(4). ASDM Version - 6.1(3). Firewall Mode - Routed.
We want to configure QoS for some subnets and enable policing such that they cannot use more than 1mb of bandwidth. I think we cannot create more than 1 policy for it. In that case i created a policy with QoS enabled and configured the Input and Output policing with Commited Rate of 1024000 bits/second. But it does not seem to work.
how can i create such policy in the ASA to limit certain subnets to 1mb bandwidth ?
I'm trying to configure an asa 5510 8.2(1)?I have a range of pub ips 3*.108.234.145-150
>>> E0/0 3*.108.234.146 outside public
>>> E0/1 192.168.1.1 inside
>>> E0/2 192.168.3.1 dmz
would like to map dmz host 192.168.3.107 to external 3*.108.234.147 on port 5000 and 50001 LOCAL LAN should also be able to get to dmz host ports.i've tried a few configs and also following this example:
[URL]
without any luck, here is my config, also posted the out put of show arp which is able to see and ping the host on dmz, also the output of show access-list which shows hits to it.
prophase-pix(config-if)# show running-config
: Saved
:
ASA Version 8.2(1)
!
hostname prophase-pix
enable password encrypted
[code]....
i'm trying to configure an ASA with two ISP to be reached from internet for vpn access, the objective is that the user can use any of the Public address attached to ASA to connect to the company. Is this possible? i'm facing some problems because i can not use two different default routes (same AD) pointing to two different interfaces, this is the message that i receive "ERROR: Cannot add route entry, possible conflict with existing routes" and when i change the AD of one of the default routes i just can reach one ISP.
View 1 Replies View RelatedI want to set up ipchain firewall of my ubuntu so that it prevents to traffic to an specific IP address?
View 1 Replies View RelatedI would like to know how to configure my DIR-600s firewall UDP Endpoint Filtering. I ve read some guides and I ve got to configure this to Endpoint Independent in order to play League of Legends. The problem is that I can see the option Firewall & DMZ but then I don't see the UDP or TCP Endpoint Filtering options.
View 1 Replies View Related