Escolar Documentos
Profissional Documentos
Cultura Documentos
Chapter 3
ASA Basic
After Reading this chapter you would be able to configure & Describe
Page 25 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Diagram:-
ASA Mode
ciscoasa> (User mode)
ciscoasa> enable
Password:
ciscoasa# conf t (enable mode)
ciscoasa(config)# ! hostname (config-mode)
ciscoasa(config)# hostname ASA1
Page 26 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Page 27 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
! verification on pc
Page 28 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
! verification in pc
Page 29 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
! verification in pc2
PC2#ssh -l shiva 192.168.102.1
Password:
Type help or '?' for a list of available commands.
ASA1>
! you can't telnet to lowest security-level
ASA1(config)# telnet 0 0 outside
ASA1(config)# ssh 0 0 outside
PC2#telnet 192.168.102.1
Trying 192.168.102.1 ...
% Connection timed out; remote host not responding
PC2#ssh
PC2#ssh -l
PC2#ssh -l shiva 192.168.102.1
Page 30 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Password:
Page 31 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Note:-
if some wrong
please run these commands on asa
ASA1(config)# asdm image disk0:/asdm-66114.bin
initiate connection again.........................................
Page 32 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Page 33 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Page 34 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Page 35 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
! ASA os Backup
ASA1(config)# sh fla
ASA1(config)# sh flash:
--#-- --length-- -----date/time------ path
146 0 Aug 29 2014 13:00:14 nat_ident_migrate
147 1422 Sep 23 2014 17:29:26 admin.cfg
148 2331 Sep 23 2014 17:29:26 old_running.cfg
22 4096 Sep 27 2013 10:55:54 coredumpinfo
23 59 Sep 27 2013 10:55:54 coredumpinfo/coredump.cfg
149 35602388 Aug 29 2014 12:44:36 csd_3.6.6203-k9.pkg
11 4096 Aug 29 2014 12:48:00 log
21 4096 Aug 29 2014 12:48:40 crypto_archive
150 17851400 Aug 29 2014 12:56:32 asdm-66114.bin
151 135168 Jan 01 1980 00:00:00 FSCK0000.REC
152 12998641 Oct 16 2012 13:16:00 csd_3.5.2008-k9.pkg
153 4096 Aug 29 2014 13:29:32 sdesktop
165 2082 Aug 29 2014 13:29:30 sdesktop/data-bkp.xml
166 2009 Aug 29 2014 13:42:06 sdesktop/data.xml
154 6487517 Oct 16 2012 13:16:00 anyconnect-macosx-i386-2.5.2014-k9.pkg
155 6689498 Oct 16 2012 13:16:02 anyconnect-linux-2.5.2014-k9.pkg
156 4678691 Oct 16 2012 13:16:02 anyconnect-win-2.5.2014-k9.pkg
157 333 Aug 29 2014 13:28:04 Anyconnect_client_profile.xml
158 36993024 Sep 23 2014 16:38:16 asa903-smp-k8.bin
160 4096 Jan 01 1980 00:00:00 FSCK0001.REC
161 31522773 Sep 26 2013 12:44:30 anyconnect-win-3.1.03103-k9.pkg
Page 38 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
! password recovery
ASA1(config)# enable password asdasdwwqek89geuqbdqweqw
ASA1(config)# wr
ASA1(config)# write
ASA1# ex
Logoff
.
Cryptochecksum (unchanged): 3968c06d 20751a6b 73f37918 d875d53d
Page 39 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x
Secure Your Network With Cisco ASA Second Generation's OS 9.x
***
*** --- START GRACEFUL SHUTDOWN ---
ASA1> en
ASA1> enable
Password: (now no password)
ASA1#
ASA1(config)# ping 192.168.101.100
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 192.168.101.100, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 1/4/10 ms
ASA1(config)# pin
ASA1(config)# ping 192.168.102.100
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 192.168.102.100, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 1/1/1 ms
Page 40 of 846
Secure Your Network With Cisco ASA Second Generation's OS 9.x