<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Mad Router &#187; ASA</title>
	<atom:link href="http://www.madrouter.com/tag/asa/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.madrouter.com</link>
	<description>CCNA, CCNP, CCVP, Security Technologies</description>
	<lastBuildDate>Tue, 25 May 2010 11:34:30 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>ASA 8.3 released!</title>
		<link>http://www.madrouter.com/asa-8-3-released/</link>
		<comments>http://www.madrouter.com/asa-8-3-released/#comments</comments>
		<pubDate>Fri, 12 Mar 2010 13:52:03 +0000</pubDate>
		<dc:creator>Alex</dc:creator>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[8.3]]></category>
		<category><![CDATA[appliance]]></category>
		<category><![CDATA[ASA]]></category>
		<category><![CDATA[asdm]]></category>
		<category><![CDATA[cli]]></category>
		<category><![CDATA[note]]></category>
		<category><![CDATA[release]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.madrouter.com/?p=256</guid>
		<description><![CDATA[ASA 8.3.1 has been release on March, 8th Great news I&#8217;m going here to show some of the new features that comes with! Some are good&#8230; and others not ^^ Let&#8217;s start with the bad news Memory Upgrade To upgrade your ASA with 8.3 release, you will need to upgrade your hardware. Memory requirement is [...]]]></description>
			<content:encoded><![CDATA[<p>ASA 8.3.1 has been release on March, 8th <img src='http://www.madrouter.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  Great news <img src='http://www.madrouter.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>I&#8217;m going here to show some of the new features that comes with!<br />
Some are good&#8230; and others not ^^</p>
<p>Let&#8217;s start with the bad news</p>
<p><strong>Memory Upgrade</strong></p>
<p>To upgrade your ASA with 8.3 release, you will need to upgrade your hardware.<br />
Memory requirement is more than the double default memory. 512 Mb for a 5505, 1GB for 5510 &#8230;</p>
<p>You will still be able to install the new release, but you&#8217;ll get some error message in CLI and in ASDM. The full features set will be not supported until you&#8217;ll get some memory.</p>
<p><a href="http://www.madrouter.com/wp-content/uploads/2010/03/2.png"><img class="aligncenter size-medium wp-image-257" title="2" src="http://www.madrouter.com/wp-content/uploads/2010/03/2-300x173.png" alt="" width="300" height="173" /></a><a href="http://www.madrouter.com/wp-content/uploads/2010/03/1.png"><img class="aligncenter size-medium wp-image-258" title="1" src="http://www.madrouter.com/wp-content/uploads/2010/03/1-300x146.png" alt="" width="300" height="146" /></a></p>
<p><strong>Licencing Features</strong></p>
<p>With the ASA ( and IOS 15.0 ) comes the new licensing feature. Time-based licences are required<br />
now to unblock features.</p>
<p>The good news is that time-based licenses are stackable.<br />
let&#8217;s say you purchased a licence for 1 one year, you won&#8217;t have to wait the last day to renew your licence. The count will be just incremented using your new licence.</p>
<p>You can also use multiples licenses at the same time and if you do not require a feature anymore, you can deactivate it and reactivate later.</p>
<p><a href="http://www.madrouter.com/wp-content/uploads/2010/03/12.png"><img class="aligncenter size-full wp-image-268" title="12" src="http://www.madrouter.com/wp-content/uploads/2010/03/12.png" alt="" width="642" height="765" /></a></p>
<p><strong>Master Passphrase</strong></p>
<p>The Master Passphrase is not new for IOS. This feature is the same as the IOS command service password-encryption. But instead of type 7, you will<br />
get with ASA an encryption using AES.</p>
<p><a href="http://www.madrouter.com/wp-content/uploads/2010/03/9.png"><img class="aligncenter size-full wp-image-260" title="9" src="http://www.madrouter.com/wp-content/uploads/2010/03/9.png" alt="" width="682" height="413" /></a></p>
<p><strong>Monitoring</strong></p>
<p>High Performance Monitoring for ASDM is the ability to check the inside hosts connections ( who and how much )</p>
<p>to set it up :</p>
<p><strong><em>ciscoasa(config)#hpm topn enable </em></strong></p>
<p><strong>Firewall features</strong></p>
<p>New interface is coming! the global one! You can configure access-list and others things in a global way, not only in an interface-specific way</p>
<p><a href="http://www.madrouter.com/wp-content/uploads/2010/03/10.png"><img class="aligncenter size-full wp-image-261" title="10" src="http://www.madrouter.com/wp-content/uploads/2010/03/10.png" alt="" width="554" height="221" /></a><a href="http://www.madrouter.com/wp-content/uploads/2010/03/4.png"><img class="aligncenter size-full wp-image-262" title="4" src="http://www.madrouter.com/wp-content/uploads/2010/03/4.png" alt="" width="718" height="341" /></a></p>
<p>NAT can be configured directly in the network object</p>
<p><a href="http://www.madrouter.com/wp-content/uploads/2010/03/11.png"><img class="aligncenter size-full wp-image-263" title="11" src="http://www.madrouter.com/wp-content/uploads/2010/03/11.png" alt="" width="626" height="285" /></a></p>
<p><a href="http://www.madrouter.com/wp-content/uploads/2010/03/7.png"><img class="aligncenter size-full wp-image-264" title="7" src="http://www.madrouter.com/wp-content/uploads/2010/03/7.png" alt="" width="362" height="394" /></a></p>
<p>And to finish, the NAT configuration is&#8230; quite simple as how we did earlier!</p>
<p><a href="http://www.madrouter.com/wp-content/uploads/2010/03/6.png"><img class="aligncenter size-full wp-image-265" title="6" src="http://www.madrouter.com/wp-content/uploads/2010/03/6.png" alt="" width="528" height="413" /></a></p>
<p>Others new features here:</p>
<p>http://www.cisco.com/en/US/docs/security/asa/asa83/release/notes/asarn83.html</p>
]]></content:encoded>
			<wfw:commentRss>http://www.madrouter.com/asa-8-3-released/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Recovery Password for ASA 5500 Series Adaptive Security Appliance</title>
		<link>http://www.madrouter.com/recovery-password-for-asa-5500-series-adaptive-security-appliance/</link>
		<comments>http://www.madrouter.com/recovery-password-for-asa-5500-series-adaptive-security-appliance/#comments</comments>
		<pubDate>Mon, 19 May 2008 12:26:13 +0000</pubDate>
		<dc:creator>Florent</dc:creator>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[5500]]></category>
		<category><![CDATA[5510]]></category>
		<category><![CDATA[ASA]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[recovery]]></category>

		<guid isPermaLink="false">http://www.madrouter.com/?p=39</guid>
		<description><![CDATA[How to get your configuration back when you have forgotten your enable password? I assume that you already are connected to the ASA with the console port. Restart the ASA (manually you can switch ON/OFF). Then, when prompted press ESCAPE to enter ROMMON mode. We want to bypass the startup-config on the next restart of [...]]]></description>
			<content:encoded><![CDATA[<p>How to get your configuration back when you have forgotten your enable password?</p>
<p><span id="more-39"></span></p>
<p>I assume that you already are connected to the ASA with the console port.<br/><br/></p>
<p>Restart the ASA (manually you can switch ON/OFF).<br/><br />
Then, when prompted press <strong>ESCAPE</strong> to enter ROMMON mode.<br/><br/><br />
We want to bypass the startup-config on the next restart of the ASA, so we will change the value of the configuration register.<br/><br />
We need to use the <strong>confreg</strong> command. By using this command, we enter in a wizzard which will ask us some questions.<br/><br />
<br/><br />
We answer <strong>yes</strong> at the first question, we want to change the value. (At this point you should store the configuration register value).<br/><br />
We will use the default values for all settings, except for &#8220;<strong>disable system configuration?</strong>&#8221; which is the option that will permit to bypass the startup-config. So we answer <strong>y</strong>.<br />
<br/></p>
<pre class="cisco">
rommon #0> confreg

Current Configuration Register: 0x00000001
Configuration Summary:
  boot default image from Flash

Do you wish to change this configuration? y/n [n]: <strong>y</strong>
enable boot to ROMMON prompt? y/n [n]:
enable TFTP netboot? y/n [n]:
enable Flash boot? y/n [n]:
select specific Flash image index? y/n [n]:
disable system configuration? y/n [n]: <strong>y</strong>
go to ROMMON prompt if netboot fails? y/n [n]:
enable passing NVRAM file specs in auto-boot mode? y/n [n]:
disable display of BREAK or ESC key prompt during auto-boot? y/n [n]:

Current Configuration Register: 0x00000040
Configuration Summary:
  boot ROMMON
  ignore system configuration

Update Config Register (0x40) in NVRAM...

rommon #1> boot
</pre>
<p>We can now reload the ASA with the <strong>boot</strong> command.<br />
<br/></p>
<p>Once the ASA has been reloaded, we can enter privileged mode without any password (the startup-config has been bypassed).<br />
<br/></p>
<pre class="cisco">
ciscoasa> en
Password: [enter]
ciscoasa#
</pre>
<p>Now we load the startup-config in the running-config</p>
<pre class="cisco">
ciscoasa# copy startup-config running-config

Destination filename [running-config]?

Cryptochecksum (unchanged): ab580f48 aeed7459 2da4751b b0061ac3

1726 bytes copied in 0.50 secs
MadRouterASA#
</pre>
<p>We enter global configuration mode and change the password.<br />
<br/></p>
<pre class="cisco">
MadRouterASA# conf t
MadRouterASA(config)# enable password Cisco
</pre>
<p>We change back the configuration register value.</p>
<pre class="cisco">
MadRouterASA(config)# config-register 0x00000001
</pre>
<p>Now You can save your running-config.</p>
<pre class="cisco">
MadRouterASA# copy running-config startup-config
</pre>
<p>That&#8217;s it.. !</p>
]]></content:encoded>
			<wfw:commentRss>http://www.madrouter.com/recovery-password-for-asa-5500-series-adaptive-security-appliance/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
