How to Set up a Cisco ASA DMZ: Cisco ASA Training 101

Поделиться
HTML-код
  • Опубликовано: 15 янв 2025

Комментарии • 27

  • @ahmedalali3528
    @ahmedalali3528 7 лет назад

    Your explanation is so clear and to the point

  • @KINGTECHGY
    @KINGTECHGY 11 лет назад

    It doesn't get better than this!!! thanks for sharing!!!

  • @daguirre0307
    @daguirre0307 12 лет назад

    As this example would apply to a public IP, everything would be equal to or exchange.
    Thank you very much for your answer.
    Great Video!!!

  • @Ryangiggs1118
    @Ryangiggs1118 2 года назад

    This video helped me a lot when I was creating a DMZ port. Just quick question, I'm on ASA 7.13(1), and then I was trying to add remaining ports to internal lan, but I no longer see "Switch port option" as shown ( around 7:05 of this video). How can I add ports on internal network now? thank you very much for your video and help

    • @soundtraining
      @soundtraining  Год назад +1

      That's a pretty old version of the ASA software. I'm not sure if the switchport option was available in that version. The video is based on 8.4(3)9 and it's nearly 11 years old. Try searching on "asa 7.13(1) switchport" and see if you find anything. Good luck!

  • @krstech1269
    @krstech1269 7 лет назад +2

    It would be nice to see the config at the end from the ASDM...

  • @toddsmith9481
    @toddsmith9481 11 лет назад

    Great video Don, would be great to see what your CLI kungfu created in the ASDM. Especially for those of us still back on 8.2 or earlier where 8.3+ CLI commands don't always translate.

  • @soundtraining
    @soundtraining  12 лет назад

    Sure. It would work well for something like that. Just put the access point in a separate VLAN. Give it a lower security level than the office VLAN and a higher security level than the Internet VLAN. You'll probably also need to set up PAT from the Wi-Fi VLAN to the Internet.

  • @SEWashingtonTactical
    @SEWashingtonTactical 8 лет назад +1

    Yeah I have version 8.2(5). I set up a mock DMZ but I cannot figure out how to get access to the web server I set up in the DMZ from the outside. I can access it from the inside and access the host in the outside interface from the DMZ with RDP. I am not connecting to the internet though so I don't think NAT applies.

  • @keithdube9754
    @keithdube9754 8 лет назад

    Thank you for sharing, great video indeed

    • @soundtraining
      @soundtraining  8 лет назад

      You're welcome. I'm glad you like it. Thanks for your comment.

  • @breakingsword
    @breakingsword 12 лет назад

    thanks for the video.. Sir please guide me up... I brought a new Firewall ASA CISCO 5510 for our office, but the problem is I can't able to connect my dvr cctv camera into our WAN access showing "UPNP Failed. please open UPNP" even do I already enabled the UPNP in the router and open port number in our firewall 5510 for both tcp/udp

  • @Gottigotti_yaheard
    @Gottigotti_yaheard 5 лет назад

    why no access-group --- in interface inside? Wont the inside traffic need an ACL to hit the web server?

  • @alendpr
    @alendpr 12 лет назад

    can we use DMZ to separate inside LAN and WIFI connection ? ( let assume I dont want WIFI users in our office to be able to access our storage or other resources inside the LAN)

  • @soundtraining
    @soundtraining  12 лет назад

    The answers to your questions are beyond what can be done in this forum. Start by checking out my video on Cisco ASA Initial Setup, then spend some time at the Cisco website looking at example configurations. (Make sure you're looking at the sample configs for your particular software version.) Search on the term "port address translation" for more information about PAT.

  • @soundtraining
    @soundtraining  11 лет назад

    Thanks Dwayne

  • @alendpr
    @alendpr 12 лет назад

    what exactly configs I have to make on my ASA ? and what is exactly PAT which i have to configure?

  • @haytemal-sharif4188
    @haytemal-sharif4188 9 лет назад

    it is really informative, thank you

  • @aboyd1227
    @aboyd1227 12 лет назад

    very helpful tutorial

  • @GoodGameOKC1
    @GoodGameOKC1 12 лет назад

    Great video, thanks for sharing.

  • @leonardfreid1348
    @leonardfreid1348 11 лет назад

    Great video!

  • @cirodelia2174
    @cirodelia2174 10 лет назад

    Very good thank you............

  • @553Mrx
    @553Mrx 11 лет назад

    I have mail server with Public IP address, how do I allow pop3 and smtp without using static NAT

  • @kidacrimson1204
    @kidacrimson1204 6 лет назад

    I have followed this tutorial _exactly_ three times now and these rules for opening port 80 *do not work*!! :/

    • @soundtraining
      @soundtraining  6 лет назад

      Check to make sure you're running the same software version as in the video. The video is based on version 8.4(3)9.

  • @Mirrortech1969
    @Mirrortech1969 8 лет назад

    Para la versión 8.2(5) como seria??

    • @SEWashingtonTactical
      @SEWashingtonTactical 8 лет назад

      Yeah I have version 8.2(5). I set up a mock DMZ but I cannot figure out how to get access to the web server I set up in the DMZ from the outside. I can access it from the inside and access the host in the outside interface from the DMZ with RDP. I am not connecting to the internet though so I don't think NAT applies.