Cisco ASA 5500 Firewall Logo

Related Topics:

Posted on Aug 07, 2008
Answered by a Fixya Expert

Trustworthy Expert Solutions

At Fixya.com, our trusted experts are meticulously vetted and possess extensive experience in their respective fields. Backed by a community of knowledgeable professionals, our platform ensures that the solutions provided are thoroughly researched and validated.

View Our Top Experts

Commands fro firewall

Hi,

what are the basic commands and its meaning for configuring the firewall

1 Answer

Anonymous

Level 2:

An expert who has achieved level 2 by getting 100 points

Hot-Shot:

An expert who has answered 20 questions.

Corporal:

An expert that hasĀ over 10 points.

Problem Solver:

An expert who has answered 5 questions.

  • Expert 53 Answers
  • Posted on Sep 04, 2008
Anonymous
Expert
Level 2:

An expert who has achieved level 2 by getting 100 points

Hot-Shot:

An expert who has answered 20 questions.

Corporal:

An expert that hasĀ over 10 points.

Problem Solver:

An expert who has answered 5 questions.

Joined: Sep 03, 2008
Answers
53
Questions
0
Helped
10511
Points
100

Add Your Answer

×

Uploading: 0%

my-video-file.mp4

Complete. Click "Add" to insert your video. Add

×

Loading...
Loading...

Related Questions:

0helpful
1answer

How to Prevent System Breakdown or Service Interruption of the MA5600 Caused by Network Attacks Through the Proper Configuration

The common improper configurations that affect the system security are as follows:
The ring network detection function and the anti-MAC address-spoofing function or anti-IP address-spoofing function are disabled. When the anti-MAC address-spoofing function or the anti-IP address-spoofing function is disabled, the ******* user sends the PPPoE and DHCP control packets by forging the MAC address or IP address of a legal user. In this case, the security of the system is affected.
Huawei MA5600
Run the ring check command to enable the ring network detection function on the user side
Run the security anti-macspoofing enable command to enable the anti-MAC address-spoofing function.
Run the security anti-ipspoofing enable command to enable the anti-IP address-spoofing function
The devices are managed by IP addresses of the public network and the access rights are not limited strictly when the ACL rule is configured. In this case, the network is attacked.
To ensure the security of devices, manage the devices by using the IP addresses of the private network. When configuring the ACL rule, you must comply with the principle of the minimum authorization to configure the accessible address segment. The accessible address segment can contain only the mandatory IP addresses of the management network segment. Other IP addresses cannot access the device management interface.
Run the acl command to create a basic ACL and enter the ACL mode. The number of a basic ACL can only be in the range of 2000-2999.
In the basic ACL mode, run the rule command to create a basic ACL rule. The parameters are as follows:
rule-id: Indicates the ACL rule ID. To create an ACL rule with a specified ID, use this parameter.
permit: Indicates the keyword for allowing the data packets that meet the related conditions to pass.
deny: Indicates the keyword for discarding the data packets that meet the related conditions.
time-range: Indicates the keyword of the time range during which the ACL rule is effective.
The packets that access the device management interface are not controlled so that the device is attacked by the packets. In this case, the system is caused to be busy and the services are affected.
Run the firewall packet-filter command to apply the packet filtering rules of the firewall to the interface to filter the packets that access the interface. In this case, the packet attack is prevented.
Huawei MA5616
Huawei MA5616 Gold Line
Huawei MA5616 Silver Line
0helpful
1answer

Does the Switch Support QinQ?

Ā· The S2700EI supports only basic QinQ configured using the port link-type dot1q-tunnel command, and does not support selective QinQ configured using the port vlan-stacking vlan command.
Ā· The S2700SI does not support basic QinQ or selective QinQ.
Ā· Other models support both basic QinQ and selective QinQ.
0helpful
1answer

I have configured Cisco ASA Firewall and I have given ICMP Inspect also But I cant able to ping the PC Kept in the DMZ from the Outside interface

HI,


· Please check the whether the security level for DMZ and outside interface, If DMZ is high security level. Please do the NAT configuration
· If it's having the same security level. Please issue the command "same-security-traffic permit inter-interface "in the global config mode.

0helpful
1answer

Need some basic show command to troubleshoot

mode exec user Router)
ping ip
show ip route
show version
traceroute ip

mode exec priveligiado
show arp
show interface
show protcols
show ip protocols
show startup-config
erase startup-config
reload
0helpful
1answer

Vista reboots, can't get to my desktop

Use Vista DVD and boot from CD in BIOS.It will give an option fro repair.Go to repair console and run this command

CHKDSK /p
2helpful
3answers

How to configure static route between 2 LANs?

the command what you have given is correct as per your explanation. If you could post the configuration, it will be good to fix the issue.
0helpful
1answer
0helpful
1answer

Firewall settings

This usually happens due to missing or corrupt SharedAccess reg key, which represents the Windows Firewall Service.
Resolution

Download sharedaccess.reg (for Windows XP SP2 only) and save to Desktop. Then double-click the file to merge the contents to the registry. The Services entry will be created. Restart Windows (mandatory step, otherwise the following NETSH command will display an error message).

After restarting Windows, run the following from Command Prompt (cmd.exe)

NETSH FIREWALL RESET

Launch firewall applet from Control Panel, and then configure your Windows Firewall settings.

If nothing helps, as a last-resort solution (before reinstalling Windows XP Service Pack 2), give these two commands a try. Click Start, Run and type:

rundll32 setupapi,InstallHinfSection Ndi-Steelhead 132 %windir%\inf\netrass.inf

Restart Windows, and then run this command (from Command Prompt):

NETSH FIREWALL RESET

Attempt to start Firewall applet. Start the Windows Firewall service if prompted.
2helpful
2answers

How to configure Sonicwall TZ 190? I have connected console to the Sonicwall and trying to open it via Console. But no configuration or prompt is coming. Kindly help ASAP.

open control panel and then add printers and other hardware, then up in left hand menu go to system then hardware, device managed and check if your driver is updated. if it says it's working properly then uninstall it and it'll pop back up reinstall then it should work fine.
0helpful
2answers

Basic Configuration Guide

http://www.nokia-asia.com/nokia/0,,80787,00.html This page will point you in the right direction. It is the specs and support w/ manual download. Good Luck, Tim
Not finding what you are looking for?

95 views

Ask a Question

Usually answered in minutes!

Top Cisco Computers & Internet Experts

Brad Brown

Level 3 Expert

19187 Answers

Grand Canyon Tech
Grand Canyon Tech

Level 3 Expert

3867 Answers

Sean Wright
Sean Wright

Level 3 Expert

2045 Answers

Are you a Cisco Computer and Internet Expert? Answer questions, earn points and help others

Answer questions

Manuals & User Guides

Loading...