Securing Exchange OWA with RSA SecureID
Nov17

Securing Exchange OWA with RSA SecureID

KB ID 000096 Problem Later on in the year I’ve got a big RSA and SharePoint deployment, as I know ‘Zippity Squat’ about SharePoint, I thought the best way to get some hands on experience, was to work out how to integrate SecureID with Exchange 2013, (which I know a few things about!) Solution I’m assuming you already have RSA Authentication Manager setup and users/tokens deployed. This run though is simply to...

Read More
GNS3 Cannot Connect Network Interfaces when running on VMware vSphere
Nov17

GNS3 Cannot Connect Network Interfaces when running on VMware vSphere

KB ID 0000671  Problem I have plenty of real ASA firewalls to play with, but it’s getting round to re-certification time, so for ease I thought I’d run up a Virtual ASA on my vSphere 5 box just for testing and breaking. However no matter what type of Virtual Network adaptor I used (vmxnet3, e1000, etc) I could not connect to the virtual firewall. Solution 1. Firstly make sure you actually have an IP address in the correct...

Read More
Cisco ISE – Replace the Self Signed Certificate
Nov17

Cisco ISE – Replace the Self Signed Certificate

KB ID 0001068  Problem Cisco ISE arms itself with a self generated certificate out of the box, (well the NFR appliance does anyway). To replace that cert with one signed by your own CA, this is the procedure. (Note: I’m using Microsoft Certificate Services on Server 2012 R2). Solution Step 1: Import the CA Certificate into ISE Note: If you have a lot issuing servers it’s a good idea the repeat this procedure for EVERY...

Read More
Cisco ISE – Upgrading
Nov17

Cisco ISE – Upgrading

KB ID 0001071  Problem Just as I was hunting around for an NFR version of Cisco ISE 1.3, they released 1.4. I wasn’t sure if I could upgrade my NFR version without breaking it so I thought I would ‘have a go’. Solution If you read the documentation for the upgrade of 1.2 to 1.4, I suggest you skip straight to the tasks to do AFTER upgrade, as it has a habit of resetting things back to default, best to make sure you...

Read More

Cisco FireSIGHT – Enable Active Directory (LDAP) Authentication

KB ID 0001102 WARNING this is for older versions of the FirePOWER Management Platform, go to the following link for newer versions Cisco FirePOWER Management Appliance – Allowing Domain Authentication Problem To save you creating multiple users on your FireSIGHT appliance, and assigning roles to them you can utilise your existing Active Directory. In fact FireSIGHT does a good job of enabling granular administration based on AD...

Read More