4th February 2012

Why Firewalls Don’t Have Telnet or SSH Clients

I found this on Cyber Corner blog:

Another missing ASA-feature: telnet and ssh client: “ Every single decent Cisco-device on earth has the ability to make an CLI-user jump to another device with telnet or ssh. Except the ASA. I really wish that this feature could be added. Right now I am troubleshooting a firewall and from where I am right now the only way in is to SSH to the ASA. I can do whatever I want inside the firewall from my SSH-window, but I need to access a router inside of that firewall, and if this feature wasn´t missing i could simply run ‘ssh ip-address’ to jump to the switch´s CLI.

Am I the last CLI-.guy on this planet? Please, Cisco? 

This post is copyright of Thropos Ltd ©2008-2011 at Etherealmind.com - contact | email: greg.ferro@packetpushers.net - twitter: @etherealmind | All rights reserved

Internets of Interest:21 Apr 11

Collection of useful, relevant or inane places on the the Internets for 21 Apr 11:

This post is copyright of Thropos Ltd ©2008-2011 at Etherealmind.com - contact | email: greg.ferro@packetpushers.net - twitter: @etherealmind | All rights reserved

Outburst: Cisco Catalyst 6500 ASA Services Module

The Cisco C6500 ASA Service Module finally announced. It’s been a long wait, here are my review notes for what little information we have on the product.

This post is copyright of Thropos Ltd ©2008-2011 at Etherealmind.com - contact | email: greg.ferro@packetpushers.net - twitter: @etherealmind | All rights reserved

Cisco SecureX – Nothing but Empty Words ?

Apparently SecureX is “Context Aware Enforcement”. It’s also Cisco’s current security strategy ( is that three or four in the last three years ? ). So it’s something we should probably be aware of. Right ?

I’m coming up with nothing.

This post is copyright of Thropos Ltd ©2008-2011 at Etherealmind.com - contact | email: greg.ferro@packetpushers.net - twitter: @etherealmind | All rights reserved

Citrix Branch Repeater Authentication With Cisco TACACS+

I have been looking about for documentation on how to configure TACACS authentication with a Citrix Branch Repeater, however so far I have only been able to find documentation for NetScaler. So I have setup a LAB and decided to write the documentation myself. For those who cannot be bothered to read this post there [...]

This post is copyright of Thropos Ltd ©2008-2011 at Etherealmind.com - contact | email: greg.ferro@packetpushers.net - twitter: @etherealmind | All rights reserved

Verifiying IPsec and SSL Performance of ASA Firewall

It’s difficult to a get any documentation from Cisco that confirms the forwarding performance of the ASA firewall. However, once you have got a unit, the “show crypto acclerator statistics” is a handy way to verify and check the hardware performance of your ASA. I think that most of this output is self-explanatory so I’m [...]

This post is copyright of Thropos Ltd ©2008-2011 at Etherealmind.com - contact | email: greg.ferro@packetpushers.net - twitter: @etherealmind | All rights reserved

End of Life Notice for Cisco CS-MARS Questions CiscoíS Commitment to Security.

Cisco announces End Of Life for CS-MARS. Whither goes Cisco’s commitment to Security ?

This post is copyright of Thropos Ltd ©2008-2011 at Etherealmind.com - contact | email: greg.ferro@packetpushers.net - twitter: @etherealmind | All rights reserved

Internets of Interest:2 Sep 10

Collection of useful, relevant or inane places on the the Internets for 2 Sep 10:

This post is copyright of Thropos Ltd ©2008-2011 at Etherealmind.com - contact | email: greg.ferro@packetpushers.net - twitter: @etherealmind | All rights reserved

Show 15 ñ Saving the Web With Dinky Putt Putt Firewalls

Web Application Firewalls, Talking Puppets, ATM to IP migration and Dinky Putt Putt Firewalls.

This post is copyright of Thropos Ltd ©2008-2011 at Etherealmind.com - contact | email: greg.ferro@packetpushers.net - twitter: @etherealmind | All rights reserved

Internets of Interest:30 Jul 10

Collection of useful, relevant or inane places on the the Internets for 30 Jul 10:

This post is copyright of Thropos Ltd ©2008-2011 at Etherealmind.com - contact | email: greg.ferro@packetpushers.net - twitter: @etherealmind | All rights reserved