Broken GANYMEDE on asdm.
Hi all
I'm trying to fix Ganymede + on one of our 5550's asa. Now, Ganymede works via ssh, but not through asdm. However, I can use asdm via the local login. Here are a few configs that seem relevant:
Bugsunny # sh run http
Enable http server
255.255.255.0 x.x.x.0 management http
HTTP x.x.4.224 255.255.255.224 outside
HTTP x.x.x.45 255.255.255.255 outside
HTTP x.x.x.20 255.255.255.255 outside
HTTP x.x.x.126 255.255.255.255 outside
HTTP x.x.x.96 255.255.255.224 outside
x.x.x.x 255.255.255.255 out http
bugsbunny # sh run ssh
SSH x.x.x.0 255.255.255.0 management
SSH x.x.4.224 255.255.255.224 outside
SSH x.x.x.45 255.255.255.255 outside
SSH x.x.x.20 255.255.255.255 outside
SSH x.x.x.126 255.255.255.255 outside
SSH x.x.x.96 255.255.255.224 outside
SSH x.x.x.x 255.255.255.255 outsidetimeout 30
bugsbunny # sh run asdm
ASDM image disk0: / asdm - 647.bin
enable ASDM history
It drives me crazy...
Hello
What is your config from AAA for http authentication? Check that it is configured to use Ganymede first.
Thank you
John
Tags: Cisco Security
Similar Questions
-
Hi all
We use CiscoSecure ACS 4.2 for AAA.
In our ASA 8.2.5 ASDM 7.3 (1) 101, if connect us with user group privilege 5, we would be unable to see the dashboard of firewall for Top 10 Services / Sources / Destinations.
Someone knows how to have the privilege of established, essentially the Group of users that we have only in read-only, but can see the Top 10 services/sources/destinations edge ASDM
Thank you very much
Hi David,
Yes you are right with privilege 5 you would be able to make these changes.
You can use one of two methods of authorization in order to work around this limitation:
Local database: configure command on the security privilege levels
device. When a local user authenticates with the enable command (or logs
with the command login), the security apparatus put this user in the
level of privilege that is defined in the local database. The user can then
access controls at and below the user privilege level.Note You can use the authorization of local control without all the users in local
without CLI and database or enable authentication. Instead, when you enter
enable command, you enter the enable password and security
device puts you in level 15. You can then create enable passwords for
all levels, so that when you enter enable n (2 to 15), security
device puts you in the level n. These levels is not used, unless you put
local command authorization (see "setting up order Local
Authorization ".
http://www.Cisco.com/c/en/us/TD/docs/security/ASA/asa80/configuration/gu...GANYMEDE + server: GANYMEDE Server + (ACS), to configure the controls that can be used by a user or a group after they authenticate to access CLI. All the commands that a user enters in the CLI are verified with the GANYMEDE server +:
http://www.Cisco.com/c/en/us/support/docs/security/secure-access-control...
It will be useful.
Kind regards
Aditya
Please evaluate the useful messages.
-
How to set up the ASDM/HTTP access for Cisco ASA firewall
Hi all
I am looking for a solution / guide that will allow our ASA 5510, V8.4 (5) Firewall, ASDM version 6.4 (9) to help users Active Directory. I want to activate our administrators to access the ASA via ASDM using their AD accounts (a local administrator account also exist but not a password of General knowledge)
Anyone would be abe to advise on a guide / Solution.
Thank you very much
If that you issue correctly you want active tpo AD authention for AMPS/HTTP access to the ASA. If it is correct that you have need of the following using the CLI to enable that command
ASA-32-22 (config) # aaa authentication http console?
set up the mode commands/options:
LOCAL server predefined Protocol AAA 'local' tag
Name WORD of RADIUS or GANYMEDE + aaa-server for the administrative group
authentication
After the console you needd to defind the name of the AD server you have configured on the SAA.
You can do the same thing by using ASDM:
Change LOCAL to the announcement that there are listed.
I hope that answers your question.
Thank you
Jeet Kumar
-
Allow remote access to the VPN Cisco ASDM
Hello
I am trying to access asdm Setup for the user remote vpn. Our ASA running version 9.1 (1). ASDM is running version 7.1 (1) 52
I have apart from the interface within the interface enabled for vpn tunnel and I use 3rd interface (asdm_inf) dedicated to this purpose.
In the asdm, I enabled the management to asdm_inf interface. In the section ASDM, HTTPS, Telnet, SSH, I also add ASDM/HTTPS(port 444) for asdm_inf, ip_address 0.0.0.0 mask 0.0.0.0.
However, when I connect to the vpn client and try https://asdm_inf:444, the connection is broken with timeout.
Where could I go wrong? Any help would be appreciated.
Thank you
Hello
Well, split tunnel is incorrect, you are tunneling to 172.16.66.0/24, while your BFD which you want to manage the ASDM to is 192.168.244.0/24, so the ACL split tunnel should also 192.168.244.0/24 network.
-
Time Machine restore, most of the alias icons are broken?
I recently restored the system of Time Machine, but my alias (for most) have broken images. If I copy the aliases, they are all fixed, but I can't do it exactly for each alias on the machine! Restoration of the alias of Time Machine seems to have the same effect.
Is it possible for the shot to solve this problem?
I tried several solutions, compensation resolved cache:
Deploy sudo rm - rf / *.
sudo rm - rf ~/Library/Caches/*
Reset
If I had known what specific cache which is held the icon broken, images that would have been better. It turns out that only some of the specific sizes were broken, which explains why the icons seem to appear and then disappear again on another page.
-
Sync ITunes broken 12.5.1
I've also updated my IPhone to OS 10.0.2 lasest and ITunes for 12.5.1 and synchronization is now broken. The phone does not even get detected in ITunes, but OS 10 Windows detects the phone in the Device Manager.
Get help from this article If iTunes does not your iPad, iPhone or iPod - Apple Support
-
Do I lose all the iMessages that have not been delivered to my iphone if I withdraw (from iMessage) my phone number? My current iphone is broken and I am planing to get a new one in a few months.
You may lose everything. iMessage, like most e-mail services, don't keep permanently undeliverable messages. They only keep in the short period send queue (I don't know exactly how much time but some Apple tech sites indicate no more than 10 days to two weeks) until they are purged. That's pretty standard as otherwise, large volume, messaging services would be sitting on tera-bytes of messages not delivered each month.
You actually have to change my phone number? If not, let alone sign and only in iMessage when you have the new phone with this set of numbers upward to the service.
-
y screen is broken and I don't see how can I unlock my phoneme of display
- on IPhone 5 s screen is broken how can I unlock my phone to inport my photos
Too late now, you need fix the screen first.
-
Hello
I just upgraded to iOS 10. When you connect AP mobile using bluetooth, the connection works OK, but fell after a few seconds when the iPhone screen goes into sleep mode.
WiFi Hotspot seems to work, but I can't connect to my VPN from my laptop. Then my cell phone connection failed attempts to verify my credentials.
I have another iPhone that always works 9 and all iOS works without problems. I also tried to use different carriers that had no effect at all.
It seems that Mobile Hotspot is severely broken in iOS 10. Can anyone confirm this or make suggestions how to fix it? I'm really desperate here.
Thank you.
Hi persistent presence!
I see that you are having problems using Personal Hotspot from your iPhone after updating to iOS 10. I know it's important to have Personal Hotspot works correctly, and I'm happy to offer assistance. Please try all relevant measures of this article, there is a section which specifically addresses the Bluetooth connections:
Get help with Personal Hotspot in iOS
Thank you for using communities of Apple Support.
See you soon!
-
10 broken iOS Update-home button
I just did the update ios10 and my home button has been broken for 2 years. His complete the update but its stuck on a white screen saying "press home to upgrade".» I am unable to do this command and I can't seem to restore on my back up to iTunes... Help please!
Hi kaylabon87,
If your Home button does not work on your iPhone and you are unable to update or restore your device, the resource below provides a link to contact AppleCare support.
If you are unable to update or restore your iPhone, iPad or iPod touch
Contact the Apple Support if you are unable to update or restore your device with the recovery mode, or you can use the mode of recovery because of the broken or stuck buttons.
Last modified: Sep 15, 2016
Take care.
-
Apple Watch with broken touch screen
Hello, community.
I bought my 42 mm watch with stainless steel on January 4, 2016. And a few weeks ago I damaged it accidentally. Him came bracelet cancelled and the watch fell to the ground. Thus, the glass is broken. Touch screen works, but the broken glass is too high and can damage the fingers.
On 7 September, Apple announced a new series of Apple Watch 2.Is it now possible to give them my watch, pay with a discount and make a NEW APPLE WATCH Apple Watch 2 series, or new sport? without a bracelet, that a case is necessary.
Hello
Apple does not currently offer a program of recovery for Apple Watch, whether in work or damaged condition.
For compensation for your damaged watch, contact the Apple Support (mail service may be available) or make a booking Genius Bar to establish your available service options, the likely time and cost:
- Contact - Support official Apple
- https://Twitter.com/applesupport
- http://www.Apple.com/retail/Geniusbar/
Prices for the United States information service, for example, are available here:
-
Greetings,
I found myself in a difficult situation. Any guidance will be greatly appreciated!
I own an iPhone 6 s more than 64 GB. I left the United States on his way to Egypt for the military. During a mode ensures the Kuwait, my phone slipped where momentary I put it and it fell into the water. How I managed to drop into the water in a desert, I don't know. I have not either the AppleCare I told myself that I would take care of it...
I immediately turned it off. Once I found some white rice believed, I placed the phone in a hermetic bag with rice for 3 days. When I turned it on it worked, but the screen has acted a bit strange. In addition, the speaker was no longer working and the front camera was blurry. A few days later the screen stopped working. I was able to use find my iPhone to remove the content, but the phone to be was broken. In addition, a piece of rice even managed to get stuck into the headphones Jack.
I'm looking for "warranty" repair tips from Apple to the subject. Currently, the phone is in route back to Denver where my other significant it will bring in an Apple Store. Because I feel that the phone is quite broken, do you think Apple will fix it for the elimination of the cost of repairs guaranteed $ 329? Or do you think it's too far gone?
Thank you for your time. Any thoughts would be appreciated. Have a wonderful day!
-Aaron
Only out of warranty costs for a replacement. Apple does not repair itself, they replace with a service unit. The service unit will be like new and recovers the rest of your guarantee of origin, or 90 days, whichever is longer.
-
My phone broken LCD and I'm getting a new, but I can't fix my current do not know if my phone is saved one, im. so I can back up my phone without having to inside? If so, how?
Now that he's broken, it's too late to save it.
-
How to recover iTunes from a broken computer, I don't have any backup?
Hello
Is there a way to recover my old iTunes library from a computer, I've had a few years ago? It's broken, and I had to bring it back to the shop, which eventually get the money back guarantee, but the loss of files. My iTunes had a backup at the time, and I lost the music I have no paper copy of.
Can anyone tell if I can get it back? I'm also sure that I know the name of the PC, and it's under the same Microsoft Windows 8 account.
Thanks to all who have an answer.
You need of the Apple that has been associated with the old iTunes library ID in order to re download purchases of past and there is no guarantee that it will work him given was a few years ago because you used this computer.
-
How can I repair my broken Magic Keyboard and Mouse?
My niece who is 23 years younger than broken me my Apple Magic keyboard and mouse Magic Mouse from Apple for my iMac, and all of them are not in stock because they are used on Mac computers, and I don't want to lose a keyboard and a mouse, another Mac as on my Mac Pro. She said I was due, but I SLEEP, then all of a sudden, I heard the noise. Is there warranty for the keyboard and mouse? How can I replace it with Apple because she says it's worth $ 5, and piano of plastic doll is worth $ 500 and the cheap plastic. Should I go to the Genius Bar because the keys are gone, and the mouse is broken.
Apple does not cover such damages, regardless of warranty.
You can buy new online through a variety of websites looking for them online, that they do not have to come from Apple.com. Stores of brick and mortar like best buy or Wal-Mart can take so if an Apple Store is not an option. There are also alternatives and sometimes a lot less expensive replacements through various vendors such as Microsoft and Targus just to name a few.
Maybe you are looking for
-
reduced to a bookmarks bar icon
Yesterday, I had a separate bookmark toolbar line. Today I don't have. I clicked on display in the navigation toolbar and made sure the bookmarks bar has been verified. It was, but no toolbar is visible. If I uncheck bookmarks toolbar, it appears as
-
Windows 7 64 bit does not recognize the USB external drive HARD Stor E art 3.5 "
I buy the art external disk HARD Stor E 3.5 "and spend a few days in windows does not recognize the HARD drive. Try to connect the drive to other USB 2 ports and nothing happens. Use a USB to see if has been a problem with the USB ports, but all 3 ar
-
Laptop HP Envy M7-109DX: updates
This is probably a silly question, but if I put the computer to sleep or set the display turns off after so all will be minutes I get my Norton Security, Windows, or HP updates during this period?
-
I created my new HP Touchpad at home. Good so far. My question is... If I take it somewhere that has wifi, how to connect to the internet? I need to change a setting or something? And while I'm here if I can ask another question... I do not see a p
-
HP LaserJet Ent.MFP M725f: Stuck 'Initializing 30' on HP LaserJet Ent.MFP M725f
Hello good day... CAN anybody face this problem with the HP LaserJet Enterprise M725f MFP printer, printer is not continue starting and blocked when processing of the "Initializing 30." Thank you in advance for those who can help me solve this proble