Broken GANYMEDE on asdm.

Hi all

I'm trying to fix Ganymede + on one of our 5550's asa. Now, Ganymede works via ssh, but not through asdm. However, I can use asdm via the local login. Here are a few configs that seem relevant:

Bugsunny # sh run http
Enable http server
255.255.255.0 x.x.x.0 management http
HTTP x.x.4.224 255.255.255.224 outside
HTTP x.x.x.45 255.255.255.255 outside
HTTP x.x.x.20 255.255.255.255 outside
HTTP x.x.x.126 255.255.255.255 outside
HTTP x.x.x.96 255.255.255.224 outside
x.x.x.x 255.255.255.255 out http
bugsbunny # sh run ssh
SSH x.x.x.0 255.255.255.0 management
SSH x.x.4.224 255.255.255.224 outside
SSH x.x.x.45 255.255.255.255 outside
SSH x.x.x.20 255.255.255.255 outside
SSH x.x.x.126 255.255.255.255 outside
SSH x.x.x.96 255.255.255.224 outside
SSH x.x.x.x 255.255.255.255 outsidetimeout 30
bugsbunny # sh run asdm
ASDM image disk0: / asdm - 647.bin
enable ASDM history

It drives me crazy...

Hello

What is your config from AAA for http authentication? Check that it is configured to use Ganymede first.

Thank you

John

Tags: Cisco Security

Similar Questions

  • Dashboard ASA ASDM Cisco ACS

    Hi all

    We use CiscoSecure ACS 4.2 for AAA.

    In our ASA 8.2.5 ASDM 7.3 (1) 101, if connect us with user group privilege 5, we would be unable to see the dashboard of firewall for Top 10 Services / Sources / Destinations.

    Someone knows how to have the privilege of established, essentially the Group of users that we have only in read-only, but can see the Top 10 services/sources/destinations edge ASDM

    Thank you very much

    Hi David,

    Yes you are right with privilege 5 you would be able to make these changes.

    You can use one of two methods of authorization in order to work around this limitation:

    Local database: configure command on the security privilege levels
    device. When a local user authenticates with the enable command (or logs
    with the command login), the security apparatus put this user in the
    level of privilege that is defined in the local database. The user can then
    access controls at and below the user privilege level.

    Note You can use the authorization of local control without all the users in local
    without CLI and database or enable authentication. Instead, when you enter
    enable command, you enter the enable password and security
    device puts you in level 15. You can then create enable passwords for
    all levels, so that when you enter enable n (2 to 15), security
    device puts you in the level n. These levels is not used, unless you put
    local command authorization (see "setting up order Local
    Authorization ".
    http://www.Cisco.com/c/en/us/TD/docs/security/ASA/asa80/configuration/gu...

    GANYMEDE + server: GANYMEDE Server + (ACS), to configure the controls that can be used by a user or a group after they authenticate to access CLI. All the commands that a user enters in the CLI are verified with the GANYMEDE server +:

    http://www.Cisco.com/c/en/us/support/docs/security/secure-access-control...

    It will be useful.

    Kind regards

    Aditya

    Please evaluate the useful messages.

  • How to set up the ASDM/HTTP access for Cisco ASA firewall

    Hi all

    I am looking for a solution / guide that will allow our ASA 5510, V8.4 (5) Firewall, ASDM version 6.4 (9) to help users Active Directory. I want to activate our administrators to access the ASA via ASDM using their AD accounts (a local administrator account also exist but not a password of General knowledge)

    Anyone would be abe to advise on a guide / Solution.

    Thank you very much

    If that you issue correctly you want active tpo AD authention for AMPS/HTTP access to the ASA. If it is correct that you have need of the following using the CLI to enable that command

    ASA-32-22 (config) # aaa authentication http console?

    set up the mode commands/options:

    LOCAL server predefined Protocol AAA 'local' tag

    Name WORD of RADIUS or GANYMEDE + aaa-server for the administrative group

    authentication

    After the console you needd to defind the name of the AD server you have configured on the SAA.

    You can do the same thing by using ASDM:

    Change LOCAL to the announcement that there are listed.

    I hope that answers your question.

    Thank you

    Jeet Kumar

  • Allow remote access to the VPN Cisco ASDM

    Hello

    I am trying to access asdm Setup for the user remote vpn. Our ASA running version 9.1 (1). ASDM is running version 7.1 (1) 52

    I have apart from the interface within the interface enabled for vpn tunnel and I use 3rd interface (asdm_inf) dedicated to this purpose.

    In the asdm, I enabled the management to asdm_inf interface. In the section ASDM, HTTPS, Telnet, SSH, I also add ASDM/HTTPS(port 444) for asdm_inf, ip_address 0.0.0.0 mask 0.0.0.0.

    However, when I connect to the vpn client and try https://asdm_inf:444, the connection is broken with timeout.

    Where could I go wrong? Any help would be appreciated.

    Thank you

    Hello

    Well, split tunnel is incorrect, you are tunneling to 172.16.66.0/24, while your BFD which you want to manage the ASDM to is 192.168.244.0/24, so the ACL split tunnel should also 192.168.244.0/24 network.

  • Time Machine restore, most of the alias icons are broken?

    I recently restored the system of Time Machine, but my alias (for most) have broken images.  If I copy the aliases, they are all fixed, but I can't do it exactly for each alias on the machine!  Restoration of the alias of Time Machine seems to have the same effect.

    Is it possible for the shot to solve this problem?

    I tried several solutions, compensation resolved cache:

    Deploy sudo rm - rf / *.

    sudo rm - rf ~/Library/Caches/*

    Reset

    If I had known what specific cache which is held the icon broken, images that would have been better.  It turns out that only some of the specific sizes were broken, which explains why the icons seem to appear and then disappear again on another page.

  • Sync ITunes broken 12.5.1

    I've also updated my IPhone to OS 10.0.2 lasest and ITunes for 12.5.1 and synchronization is now broken. The phone does not even get detected in ITunes, but OS 10 Windows detects the phone in the Device Manager.

    Get help from this article If iTunes does not your iPad, iPhone or iPod - Apple Support

  • Do I lose all the iMessages that have not been delivered to my iphone if I withdraw (from iMessage) my phone number? My current iphone is broken and I am planing to get a new one, with in a few months.

    Do I lose all the iMessages that have not been delivered to my iphone if I withdraw (from iMessage) my phone number? My current iphone is broken and I am planing to get a new one in a few months.

    You may lose everything.  iMessage, like most e-mail services, don't keep permanently undeliverable messages.  They only keep in the short period send queue (I don't know exactly how much time but some Apple tech sites indicate no more than 10 days to two weeks) until they are purged.  That's pretty standard as otherwise, large volume, messaging services would be sitting on tera-bytes of messages not delivered each month.

    You actually have to change my phone number?  If not, let alone sign and only in iMessage when you have the new phone with this set of numbers upward to the service.

  • y screen is broken and I don't see how can I unlock my phoneme of display

    1. on IPhone 5 s screen is broken how can I unlock my phone to inport my photos

    Too late now, you need fix the screen first.

  • Tie broken in iOS 10?

    Hello

    I just upgraded to iOS 10. When you connect AP mobile using bluetooth, the connection works OK, but fell after a few seconds when the iPhone screen goes into sleep mode.

    WiFi Hotspot seems to work, but I can't connect to my VPN from my laptop. Then my cell phone connection failed attempts to verify my credentials.

    I have another iPhone that always works 9 and all iOS works without problems. I also tried to use different carriers that had no effect at all.

    It seems that Mobile Hotspot is severely broken in iOS 10. Can anyone confirm this or make suggestions how to fix it? I'm really desperate here.

    Thank you.

    Hi persistent presence!

    I see that you are having problems using Personal Hotspot from your iPhone after updating to iOS 10.  I know it's important to have Personal Hotspot works correctly, and I'm happy to offer assistance.  Please try all relevant measures of this article, there is a section which specifically addresses the Bluetooth connections:

    Get help with Personal Hotspot in iOS

    Thank you for using communities of Apple Support.

    See you soon!

  • 10 broken iOS Update-home button

    I just did the update ios10 and my home button has been broken for 2 years. His complete the update but its stuck on a white screen saying "press home to upgrade".» I am unable to do this command and I can't seem to restore on my back up to iTunes... Help please!

    Hi kaylabon87,

    If your Home button does not work on your iPhone and you are unable to update or restore your device, the resource below provides a link to contact AppleCare support.

    If you are unable to update or restore your iPhone, iPad or iPod touch

    Contact the Apple Support if you are unable to update or restore your device with the recovery mode, or you can use the mode of recovery because of the broken or stuck buttons.

    Last modified: Sep 15, 2016

    Take care.

  • Apple Watch with broken touch screen

    Hello, community.

    I bought my 42 mm watch with stainless steel on January 4, 2016. And a few weeks ago I damaged it accidentally. Him came bracelet cancelled and the watch fell to the ground. Thus, the glass is broken. Touch screen works, but the broken glass is too high and can damage the fingers.
    On 7 September, Apple announced a new series of Apple Watch 2.

    Is it now possible to give them my watch, pay with a discount and make a NEW APPLE WATCH Apple Watch 2 series, or new sport? without a bracelet, that a case is necessary.

    Hello

    Apple does not currently offer a program of recovery for Apple Watch, whether in work or damaged condition.

    For compensation for your damaged watch, contact the Apple Support (mail service may be available) or make a booking Genius Bar to establish your available service options, the likely time and cost:

    Prices for the United States information service, for example, are available here:

  • IPhone broken water

    Greetings,

    I found myself in a difficult situation. Any guidance will be greatly appreciated!

    I own an iPhone 6 s more than 64 GB.  I left the United States on his way to Egypt for the military. During a mode ensures the Kuwait, my phone slipped where momentary I put it and it fell into the water. How I managed to drop into the water in a desert, I don't know. I have not either the AppleCare I told myself that I would take care of it...

    I immediately turned it off. Once I found some white rice believed, I placed the phone in a hermetic bag with rice for 3 days. When I turned it on it worked, but the screen has acted a bit strange. In addition, the speaker was no longer working and the front camera was blurry.  A few days later the screen stopped working. I was able to use find my iPhone to remove the content, but the phone to be was broken. In addition, a piece of rice even managed to get stuck into the headphones Jack.

    I'm looking for "warranty" repair tips from Apple to the subject. Currently, the phone is in route back to Denver where my other significant it will bring in an Apple Store. Because I feel that the phone is quite broken, do you think Apple will fix it for the elimination of the cost of repairs guaranteed $ 329? Or do you think it's too far gone?

    Thank you for your time. Any thoughts would be appreciated. Have a wonderful day!

    -Aaron

    Only out of warranty costs for a replacement. Apple does not repair itself, they replace with a service unit. The service unit will be like new and recovers the rest of your guarantee of origin, or 90 days, whichever is longer.

  • my phone broken but I need somehow to support without going into the phone, then how do I do?

    My phone broken LCD and I'm getting a new, but I can't fix my current do not know if my phone is saved one, im. so I can back up my phone without having to inside? If so, how?

    Now that he's broken, it's too late to save it.

  • How to recover iTunes from a broken computer, I don't have any backup?

    Hello

    Is there a way to recover my old iTunes library from a computer, I've had a few years ago? It's broken, and I had to bring it back to the shop, which eventually get the money back guarantee, but the loss of files. My iTunes had a backup at the time, and I lost the music I have no paper copy of.

    Can anyone tell if I can get it back? I'm also sure that I know the name of the PC, and it's under the same Microsoft Windows 8 account.

    Thanks to all who have an answer.

    You need of the Apple that has been associated with the old iTunes library ID in order to re download purchases of past and there is no guarantee that it will work him given was a few years ago because you used this computer.

  • How can I repair my broken Magic Keyboard and Mouse?

    My niece who is 23 years younger than broken me my Apple Magic keyboard and mouse Magic Mouse from Apple for my iMac, and all of them are not in stock because they are used on Mac computers, and I don't want to lose a keyboard and a mouse, another Mac as on my Mac Pro. She said I was due, but I SLEEP, then all of a sudden, I heard the noise. Is there warranty for the keyboard and mouse? How can I replace it with Apple because she says it's worth $ 5, and piano of plastic doll is worth $ 500 and the cheap plastic. Should I go to the Genius Bar because the keys are gone, and the mouse is broken.

    Apple does not cover such damages, regardless of warranty.

    You can buy new online through a variety of websites looking for them online, that they do not have to come from Apple.com. Stores of brick and mortar like best buy or Wal-Mart can take so if an Apple Store is not an option. There are also alternatives and sometimes a lot less expensive replacements through various vendors such as Microsoft and Targus just to name a few.

Maybe you are looking for

  • reduced to a bookmarks bar icon

    Yesterday, I had a separate bookmark toolbar line. Today I don't have. I clicked on display in the navigation toolbar and made sure the bookmarks bar has been verified. It was, but no toolbar is visible. If I uncheck bookmarks toolbar, it appears as

  • Windows 7 64 bit does not recognize the USB external drive HARD Stor E art 3.5 "

    I buy the art external disk HARD Stor E 3.5 "and spend a few days in windows does not recognize the HARD drive. Try to connect the drive to other USB 2 ports and nothing happens. Use a USB to see if has been a problem with the USB ports, but all 3 ar

  • Laptop HP Envy M7-109DX: updates

    This is probably a silly question, but if I put the computer to sleep or set the display turns off after so all will be minutes I get my Norton Security, Windows, or HP updates during this period?

  • HP Touchpad Wi - Fi

    I created my new HP Touchpad at home.  Good so far. My question is... If I take it somewhere that has wifi, how to connect to the internet?  I need to change a setting or something? And while I'm here if I can ask another question... I do not see a p

  • HP LaserJet Ent.MFP M725f: Stuck 'Initializing 30' on HP LaserJet Ent.MFP M725f

    Hello good day... CAN anybody face this problem with the HP LaserJet Enterprise M725f MFP printer, printer is not continue starting and blocked when processing of the "Initializing 30." Thank you in advance for those who can help me solve this proble