HPe Synergy 12000 MPIO QSFP to 10GB SFP Setup
Dec17

HPe Synergy 12000 MPIO QSFP to 10GB SFP Setup

KB ID 0001495 Problem I was recently involved in deploying an HPe Synergy 12000 Frame. And the network connections from it were ‘a little unusual’ so I thought I’d document that here, to save anyone else the problems I had. I was connecting to an HP/Aruba 5412 switch so my cables were all HP/Aruba (to be on the safe side). What you can see (above) is the MPIO Cable (K2Q46A P/N 800867-001) fixed onto the left (and...

Read More
Factory Reset a Cisco Firewall
Nov23

Factory Reset a Cisco Firewall

KB ID 0000007  Problem You want to wipe the firewall’s config and revert to the factory settings (passwords blank – management or inside set to 192.168.1.1 and DHCP enabled, with all other settings wiped). Solution 1. Connect to the ASA via the console Cable. CLICK HERE 2. log in and go to configure terminal mode. 3. Execute the following command “config factory-default” 4. Press the space bar a few times to execute the...

Read More
Cisco ASA – Enable Split Tunnel for Remote Clients
Nov17

Cisco ASA – Enable Split Tunnel for Remote Clients

KB ID 0000066 Problem This is a simple job to do from command line, however the world is full of people who would rather spend an hour in the ASDM working out how to do it! So I’ve included both methods. What is split tunneling? This is the process of letting a remote VPN user browse the web, and access local resources etc, from their location whilst connected to your VPN in this case via SSLVPN, but also from WebVPN or IPSEC...

Read More
Deploy Cisco ASA 55xx in Active / Standby Failover
Nov17

Deploy Cisco ASA 55xx in Active / Standby Failover

KB ID 0000048  Problem You want to deploy 2 Cisco ASA 55xx Series firewalls in an Active/Standby failover configuration. Solution Assumptions. Hardware on both ASA firewalls is identical. The correct license’s for failover are installed on both firewalls. The same software versions are installed on both firewalls. You have your PRIMARY firewall set up and running correctly (Everything works!). In this example the firewalls were...

Read More
Cannot Access / Open ASDM
Nov17

Cannot Access / Open ASDM

KB ID 0000458 Problem Out of the box Cisco PIX/ASA devices should have a working ASDM. This config can get broken over time, and also there are a few things that can trip you up on your client machine. Solution Make sure the client machine you are using is not the problem 1. The ASDM runs using Java make sure the machine has Java installed. Note: If you are using Java version 7 Update 51 see the following article. Unable to Access...

Read More
Convert ASA 5500-X To FirePOWER Threat Defence
Nov08

Convert ASA 5500-X To FirePOWER Threat Defence

KB ID 0001490 Problem I’m seeing more and more people asking questions in forums about FTD, so I thought it was about time I looked at it. Cisco ASA 5500-X firewalls can now be re-imaged to run the FTD software. The thinking is that the FTD will merge the Cisco ASA product and the FirePOWER product into one unified operating system. Then that is managed by FDM (FirePOWER Device Manager), basically a web management GUI. Solution...

Read More
Cisco ASA – Password Recovery / Reset
Nov07

Cisco ASA – Password Recovery / Reset

KB ID 0000572 Problem Note: This procedure allows you to reset the password WITHOUT LOSING THE CONFIG You need to access a Cisco ASA device and do not have the passwords, there can be lots of reasons for this, lack of good documentation, bought a second hand firewall, the last firewall admin never told anyone etc. This method does require physical access to the ASA, a console cable, and a machine running some terminal emulation...

Read More
ASDM on Windows 10: ‘Cannot find Javaw.exe?’
Oct17

ASDM on Windows 10: ‘Cannot find Javaw.exe?’

KB ID 0001478 Problem Windows 10 machine, (with Latest Java installed), while attempting to launch the ASDM you see; Windows cannot find ‘javaw.exe’. Make sure you typed the name correctly, and then try again. Solution I should have fixed this a lot quicker than I did, because the error message was a lot more descriptive in older versions of Windows and the ASDM! This is the same problem seen on Windows 8. You still need...

Read More
Cisco ASA – Allow Remote Management
Oct17

Cisco ASA – Allow Remote Management

KB ID 0000173 Problem   Quite a while ago I wrote the “Connecting to and managing Cisco firewalls” article, which is still pretty complete, but I’ve been asked on a few occasions, “How do I actually configure the firewall to allow remote administration via, SSH, or HTTPS/ASDM, or Telnet If you have no network connection to the firewall, then you will need to connect via console cable (CLICK HERE). Solution...

Read More
Cisco ASA No Debug Output?
Oct16

Cisco ASA No Debug Output?

KB ID 0001477 Problem I see this get asked in forums A LOT, typically the poster has another problem they are trying to fix, someone has asked them to debug the problem and they cant see any debug output. Solution Firstly you need to understand what logging is, and how debugging fits within it. (Bear with me, this is good knowledge to have). The firewall saves logs in syslog format, and there are 8 Levels of logs, the one with the...

Read More