Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

Overview and initialization of ASA Firewall _ 01

2025-01-30 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Network Security >

Share

Shulou(Shulou.com)06/01 Report--

Empty the configuration

Clear Startup Configuration: write erase

Clear Running Configuration: clear config all (for experiment)

Restart: reload

Ciscoasa (config-if) # hostname ASA1ASA1 (config) # int gigabitEthernet 0/0ASA1 (config-if) # nameif DMZINFO: Security level for "DMZ" set to 0 by default. Except for named inside:100 or outside:50, the default is 0, and the default release is from high to low. Low to high block ASA1 (config-if) # security-level 50ASA1 (config-if) # ip address 192.168.100.139 255.255.255.255.0 install (or activate) ASDM software ciscoasa (config) # asdm p_w_picpath disk0:/asdm-731.bin start the http service and set the remote host ciscoasa (config) # http server enableciscoasa (config) # http 192.168.10.0 255.255.255.0 mgmt Note: although it is a http service But the web connection uses the https protocol. Web logins for security products are all https protocols. Create a login account and set up http login local authentication ciscoasa (config) # username user1 password woaimsj privilege 15ciscoasa (config) # aaa authentication http console LOCALASA1 (config-if) # same-security-traffic permit inter-interface to allow communication with ports of the same security level ASA1 (config-if) # same-security-traffic permit intra-interface allows virtual interfaces of the same security level on the same physical port to share the same message ASA1 (config) # route outside 00 202.100.1.2 format: route + interface name + source + mask + destination

About static rout

Supports up to three static routes with the same purpose and exit interface for load balancing

About dynamic routin

RIP OSPF EIGRP (BGP is not supported)

View

Part of show run + specific keyword equivalent to runningconfig show run all + specific keyword is equivalent to viewing details show cpu usageshow memoryshow perfmon show version

Clear connection

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Network Security

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report