Outlook Error 0x800CCC0F – Using POP3 To Exchange – Behind a Cisco CSC (Trend InterScan) Module
Nov17

Outlook Error 0x800CCC0F – Using POP3 To Exchange – Behind a Cisco CSC (Trend InterScan) Module

KB ID 0000642  Problem I upgraded a clients firewall and CSC software a couple of weeks ago, and ever since “some” users saw the following errors, Error 0x800CCC0F Task ‘{email address} – Sending’ reports error (0x800CCC0F): #The connection to the server was interrupted. If the problem continues, contact your server administrator or Internet service provider (ISP).’ Eventually it would time out...

Read More
Cisco ASA 5500 – Install and Configure a CSC Module
Nov17

Cisco ASA 5500 – Install and Configure a CSC Module

KB ID 0000731  Problem The Cisco CSC module provides ‘in line’ scanning of POP3, SMTP, HTTP and FTP traffic, to protect against viruses but also for anti spam and anti phish (with the correct licensing). If you are familiar with Trend products, you will like it, (because that’s what it runs), and the interface is much the same as Trend IWSS. It is a hardware device that plugs into the back of the ASA, and comes in...

Read More
Changing the IP Address / Subnet Mask of a Cisco CSC Module
Nov17

Changing the IP Address / Subnet Mask of a Cisco CSC Module

KB ID 0000781  Problem I had a client re-address their network this weekend, I was asked to make the relevant changes on the firewall. I know the CSC has a web interface, but as I usually work at command line I wanted to work out how to do it that way. Solution In the example below I will change the CSC module form 192.168.1.254/24 to 172.16.1.254/16. 1. Connect to the ASA, and check that the CSC module is up and healthy. Note: Due...

Read More
Cisco CSC – Upgrade the Operating System
Nov17

Cisco CSC – Upgrade the Operating System

KB ID 0000807  Problem Upgrading the operating system on the CSC module is pretty straight forward, as long as you have a valid support agreement for your hardware and a CCO account you can download the updates straight from Cisco (here). Solution WARNING: It’s rare that you can update straight to the latest version, by all means try, and the CSC module will simply error if it will not accept the version you are trying to update...

Read More
Cisco ASA5500 Update System and ASDM (From CLI)
Nov17

Cisco ASA5500 Update System and ASDM (From CLI)

Do the same from the ASDM KB ID 0000074 Problem Below is a walkthrough for upgrading the OS image and ASDM using CLI, you will need a TFTP server up and running with the files sat in the TFTP servers upload directory. NOTE for updated ASA and ASDM software you need a valid Cisco CCO Login and support contract. For information on Installing and using a TFTP Server CLICK HERE Warning: Before upgrading/updating the ASA to version 8.3 (or...

Read More
Cisco ASA5500 Update System and ASDM (From ASDM)
Nov17

Cisco ASA5500 Update System and ASDM (From ASDM)

Do the same from command line KB ID 0000073 Problem Below is a walkthrough for upgrading the OS image and ASDM using the ASDM, this method does not require access to a TFTP server. Warning: Before upgrading/updating the ASA to version 8.3 (or Higher) Check to see if you have the correct amount of RAM in the firewall (“show version” command will tell you). This is VERY IMPORTANT if your ASA was shipped before February 2010....

Read More
Cisco ASA 5500 Client VPN Access Via Kerberos (From CLI)
Nov17

Cisco ASA 5500 Client VPN Access Via Kerberos (From CLI)

KB ID 0000049 Problem You would like to enable remote access for your clients using the Cisco VPN Client software. Solution Before you start – you need to ask yourself “Do I already have any IPSEC VPN’s configured on this firewall?” Because if its not already been done, you need to enable ISAKMP on the outside interface. To accertain whether yours is on, or off, issue a “show run crypto isakmp”...

Read More
Cisco ASA5500 Client VPN Access Via RADIUS
Nov17

Cisco ASA5500 Client VPN Access Via RADIUS

KB ID 0000071 Problem Below is a walkthrough for setting up a client to gateway VPN Tunnel using a Cisco ASA appliance.This is done via the ASDM console. Though if (Like me) you prefer using the Command Line Interface I’ve put the commands at the end. You will need a RADIUS server, WIndows Server (2000 and 2003) Has its own RADIUS bolt on called Windows IAS Step 1 Below is a walkthrough on how to set this up. It also uses the...

Read More
Cisco ASA5500 Client IPSEC VPN Access
Nov17

Cisco ASA5500 Client IPSEC VPN Access

(This method uses the ASA to hold the user database) to use RADIUS CLICK HERE to use Kerberos CLICK HERE KB ID 0000070 Problem Note: IPSEC VPN is still possible, but getting Windows clients is a little sketchy, and you will have to mess about with them to get them to work on modern versions of Windows. (Mac OSX and iPhone/iPad can connect with their built in VPN software though). Below is a walkthrough for setting up a client to...

Read More
Manage Cisco ASA5500 From Outside
Nov17

Manage Cisco ASA5500 From Outside

KB ID 0000068 Problem Note: This is an old article, you might want to go here If you have to look after a lot of client firewall’s, or you simply want to be able to manage your own remotely then this can be done via the ASDM console. Solution 1 Log into the firewall > Go to enable mode. Ciscoasa Password: ******* 2 Go to configure terminal mode. ciscoasa# conf t 3. Turn on the ASDM Server. ciscoasa(config)# http server enable...

Read More