Cisco ASA – DNS Doctoring
Jan01

Cisco ASA – DNS Doctoring

KB ID 0001113 Problem Cisco DNS doctoring is a process that intercepts a DNS response packet as it comes back into the network, and changes the IP address in the response. Why Would you want to do this? Well lets say you have a web server on your network, and its public IP is 111.111.111.111, and on your LAN its internal IP address is 192.168.1.100, its public DNS name, (or URL) is www.yoursite.com. When a user types www.yoursite.com...

Read More
Cisco ASA – Enable Split Tunnel for Remote Clients
Nov17

Cisco ASA – Enable Split Tunnel for Remote Clients

KB ID 0000066 Problem This is a simple job to do from command line, however the world is full of people who would rather spend an hour in the ASDM working out how to do it! So I’ve included both methods. What is split tunneling? This is the process of letting a remote VPN user browse the web, and access local resources etc, from their location whilst connected to your VPN in this case via SSLVPN, but also from WebVPN or IPSEC...

Read More
Convert ASA 5500-X To FirePOWER Threat Defence
Nov08

Convert ASA 5500-X To FirePOWER Threat Defence

KB ID 0001490 Problem I’m seeing more and more people asking questions in forums about FTD, so I thought it was about time I looked at it. Cisco ASA 5500-X firewalls can now be re-imaged to run the FTD software. The thinking is that the FTD will merge the Cisco ASA product and the FirePOWER product into one unified operating system. Then that is managed by FDM (FirePOWER Device Manager), basically a web management GUI. Solution...

Read More
Install and Use a Windows TFTP Server
Oct17

Install and Use a Windows TFTP Server

Windows TFTP KB ID 0000063  Problem Note: If you are using a mac, then seee the following link; MAC OS X TFTP Software There are many free tftp applications, my personal favourite is 3Cdaemon, as it also has a built in syslog server and an FTP server. heres how to install it on your computer. There are a number of places you can download 3CDeamon or just  CLICK HERE Deploy a windows TFTP Server Download the files and extract them to...

Read More
Cisco ASA – Allow Remote Management
Oct17

Cisco ASA – Allow Remote Management

KB ID 0000173 Problem   Quite a while ago I wrote the “Connecting to and managing Cisco firewalls” article, which is still pretty complete, but I’ve been asked on a few occasions, “How do I actually configure the firewall to allow remote administration via, SSH, or HTTPS/ASDM, or Telnet If you have no network connection to the firewall, then you will need to connect via console cable (CLICK HERE). Solution...

Read More