Cisco ASA 5505 Firewall Initial Setup: Cisco ASA Training 101

แชร์
ฝัง
  • เผยแพร่เมื่อ 3 ธ.ค. 2012
  • www.soundtraining.net/cisco-as... In this Cisco ASA tutorial video, you will learn how to setup a Cisco ASA 5505 firewall using the ASDM (Adaptive Security Device Manager) Setup Wizard. You will also learn how to erase the startup configuration, restore the firewall to factory default settings, and save the new configuration. Basic firewall functionality is explained, along with VLAN and port configuration. Proper use of the console port is covered, plus the use of a USB-to-Serial adapter cable. Software version 9.0, ASDM version 7.0. Also appropriate for other Cisco ASA Security Appliances.
  • วิทยาศาสตร์และเทคโนโลยี

ความคิดเห็น • 188

  • @mikeyoung7660
    @mikeyoung7660 6 ปีที่แล้ว +13

    Could listen to him talk all day. Great tutor. Got his book just learning at the minute.

  • @GTOGregory
    @GTOGregory 7 ปีที่แล้ว +12

    Great video! Loud and clear audio, sharp and simple images and just what is needed to complete the task!

    • @islamtoghuj
      @islamtoghuj 3 ปีที่แล้ว +1

      and most importantly, not Indian!

  • @rlmcculley
    @rlmcculley 6 ปีที่แล้ว +2

    One of the easiest listening video's that I have ever listed to in a tutorial. Clear & concise. I have a new Cisco 5506-X that I need to import configuration from my 5505 to and I am getting errors that I don't know how to overcome. I began once again with the basic setup hoping that would help me. Thanks Don - what a great instructor you are!

  • @theophush8261
    @theophush8261 6 ปีที่แล้ว

    Great video! Loud and clear audio, Could listen to him talk all day. sharp and simple images.

  • @luvtechharleys4392
    @luvtechharleys4392 7 ปีที่แล้ว +2

    Still relevant....looking at a couple used 5505s and feel good about it and setting it up now. Tx! PS - good tone and pace, etc...makes it easy to focus and follow along.

  • @soundtraining
    @soundtraining  9 ปีที่แล้ว +2

    Derek Yip (Tree), thanks for your comment. Your default gateway should not affect your ability to connect, since you should be trying to connect from a workstation connected to the inside interface on the ASA. Check to ensure that your workstation's IP address is on the same IP subnet as the ASA's inside interface. Also, use a serial connection to the ASA to ensure that the http command enables connections from that same IP subnet. Good luck!

  • @GoodGameOKC1
    @GoodGameOKC1 11 ปีที่แล้ว +1

    Great vid!! I have a 5505 that my employer has let me use at home and your videos are great tools to assist in working with the device. thank you

  • @AugustePlacid
    @AugustePlacid 5 ปีที่แล้ว

    Spend hours watching your videos. Great instructor!

  • @soundtraining
    @soundtraining  10 ปีที่แล้ว

    Ricardson, I haven't run into that problem, but I'm glad you found a solution. Thanks for posting it.

  • @brooklynzoo81
    @brooklynzoo81 8 ปีที่แล้ว

    Fantastic video!! I followed everything step by step with no problems. Thank you!!!!

  • @Cloud816
    @Cloud816 10 ปีที่แล้ว +6

    Great video thank you for doing this!

  • @binhduh
    @binhduh 11 ปีที่แล้ว +2

    great stuff, very concise and immensely helpful! Thanks!

  • @soundtraining
    @soundtraining  10 ปีที่แล้ว +2

    Thanks. I'm glad you liked it.

  • @soundtraining
    @soundtraining  11 ปีที่แล้ว

    Glad you like them. More are coming. Please share them to help spread the word!

  • @cherriagana
    @cherriagana 2 ปีที่แล้ว +1

    9 Years later and I got my hands on a 5510 to mess with for my re education and thx god these tutorials are still here :).
    I added a comment on your how to install asdm-idm video as java webstart no longer works and the asdm needs some tweaking in the java security settings to allow TL1.0 TL1.1 :)

    • @soundtraining
      @soundtraining  2 ปีที่แล้ว

      Thanks so much. I appreciate your comment.

    • @DavidDiaz-lm2pp
      @DavidDiaz-lm2pp ปีที่แล้ว +1

      Would you please share the comment here? I can't seem to find it

  • @jcostait
    @jcostait 9 ปีที่แล้ว +2

    Thanks for your to the point presentation.
    JC

  • @seattlejayde
    @seattlejayde 6 ปีที่แล้ว +1

    This was absolutely awesome! Liked/Subscribed. Thank you, Thank you, Thank you!

  • @388thalpha
    @388thalpha 10 ปีที่แล้ว

    THANK YOU SOOOOOOOOOOooooooooooooo MUCH!!!!! I have been trying to get my PIX 515e working and after watching your video I was able to get it working. My issue was I was able to setup everything but I wasnt able to figure out how to get itto connect to the internet. I have been reading and watching videos and yours was the MAGIC video that helped me. AGAIN TY!!! I THINK.... this time I used the open DNS server that you said to use and everything came alive and started working.

    • @soundtraining
      @soundtraining  9 ปีที่แล้ว

      Wow, that's great. I'm glad it was helpful. Thanks for your comment.

  • @soundtraining
    @soundtraining  11 ปีที่แล้ว

    Hi Imran,
    Thank you for your comment. The username and password statement is not required in a basic setup.
    Don

  • @sunlec
    @sunlec 7 ปีที่แล้ว

    Very informative! Well done. Thank you for your contribution.

  • @IndyAustin
    @IndyAustin 6 ปีที่แล้ว +1

    Solid. Thank you, Don.

  • @dbiswas123
    @dbiswas123 7 ปีที่แล้ว

    Awesome training! Thanks a lot.

  • @balashazar
    @balashazar 11 ปีที่แล้ว

    Very informative and you present the information well. Thank you.

  • @ahmedlatif187
    @ahmedlatif187 7 ปีที่แล้ว

    Thank You Don R.. Crawley for get the job

  • @soundtraining
    @soundtraining  11 ปีที่แล้ว

    It's available through Amazon and other online resellers.

  • @aquadir2830
    @aquadir2830 6 ปีที่แล้ว

    You're great sir..excellent your description.

  • @MuhammadKhan-yl7mt
    @MuhammadKhan-yl7mt 11 ปีที่แล้ว

    Nicely explained on all levels.

  • @shivakumark7182
    @shivakumark7182 4 ปีที่แล้ว

    This is my first time watching for Firewall setup video but i completely satisfied and understood very well . My confidence level like i can configure any cisco firewall.
    Thanks www.soundtraining.net

  • @soundtraining
    @soundtraining  10 ปีที่แล้ว

    Artur, the video was recorded in high definition and is available to watch in HD. If you're seeing it in a lower resolution, it's probably due to your Internet connection. For information about why and how this happens, search on "youtube lowers video quality". Thanks for your comment.

  • @younes370
    @younes370 8 ปีที่แล้ว

    Thank you for this video !!!

  • @MartinPurvis
    @MartinPurvis 8 ปีที่แล้ว

    We've got a Cisco ASA 5510 at our place but previous managers that knew how to use it left the place, just trying to learn a bit from your videos to get a better understanding. Thanks

    • @soundtraining
      @soundtraining  8 ปีที่แล้ว +1

      +Martin Purvis You might want to pick up a separate used 5510 to experiment and practice on. Did the previous managers leave any documentation?

    • @MartinPurvis
      @MartinPurvis 8 ปีที่แล้ว

      +soundtraining.net might have to try and get a good deal. Absolutely none unfortunately.

  • @Hhla8485
    @Hhla8485 10 ปีที่แล้ว

    This is awesome, thank you

  • @a.raoufi855
    @a.raoufi855 6 ปีที่แล้ว

    Great tutorial!

  • @afolabisamuel7228
    @afolabisamuel7228 10 ปีที่แล้ว

    Nice way to start, Thanks

  • @soundtraining
    @soundtraining  11 ปีที่แล้ว

    Hi Tonny, be careful about counterfeit devices when purchasing from auction sites. Software version 7.2(3) is very old. The current version is 9.x. In order to upgrade, you'll need a Cisco SmartNet service contract. A used device purchased from an individual may not be eligible for a contract. A 10-user base license should suffice for most home deployments. Hope that helps.

  • @derploud2287
    @derploud2287 7 ปีที่แล้ว

    WOW Nice tutorial!

  • @HuGeek
    @HuGeek 3 ปีที่แล้ว

    You are my hero Dude! good toturial :)

  • @twosnjuk
    @twosnjuk 6 ปีที่แล้ว

    Really nice. I like the details and the hands ON type of training.

  • @Riya4s
    @Riya4s ปีที่แล้ว

    Thank you so much for your sharing ur knowledge and time

  • @lukasibanda6730
    @lukasibanda6730 ปีที่แล้ว

    Great video. Thumbs up 👍👍👍👍

  • @ShankarKalwal
    @ShankarKalwal 7 ปีที่แล้ว

    Thanks for the video.

  • @4runnerdiego
    @4runnerdiego 6 ปีที่แล้ว

    Excellent Presentation

  • @farouk6564
    @farouk6564 9 ปีที่แล้ว

    excellent tutorial! Thank you for sharing.

    • @soundtraining
      @soundtraining  9 ปีที่แล้ว

      Farouk, I'm glad you like it. Thanks for your comment.

  • @ImTheMrFoxman
    @ImTheMrFoxman 4 ปีที่แล้ว

    This is 8 years old, however, my factory default settings did not allow me to access the asdm via https. I, fortunately, have a mentor that was able to go through the arduous process of the command line and setting up config settings that finally allowed me to access the asdm. Even with them, there was a process of trial and error to get it to work.

  • @tedbanana92
    @tedbanana92 9 ปีที่แล้ว

    Hello Mr. Crawley, thanks for this excellent tutorial. Is it possible to have a layer 3 switch behind the ASA 5505 with base license? I have a C3750 L3 switch with couple of vlans and I wanted it to be somehow connected to the ASA. Perhaps have the L3 switch handle the routing and just set a static route to the ASA. It's quite different configuring the ASA 5505 compared to a higher model because you cannot set an IP address to it's interface. How would I go about configuring the switch and the ASA?

  • @arunkumar-ko4ho
    @arunkumar-ko4ho 6 ปีที่แล้ว

    excellent video and easily understand

  • @totalelectronics6734
    @totalelectronics6734 ปีที่แล้ว

    This is great! Thanks.

  • @AlainaD2003
    @AlainaD2003 6 ปีที่แล้ว

    love the get over it comment. made my night.

  • @mursidinyunus
    @mursidinyunus 10 ปีที่แล้ว

    thank you, nice tutorial

  • @lynxlive555
    @lynxlive555 9 ปีที่แล้ว

    curious to know when listing asa on a resume how much would be expected for a ccna. basics of setting up all features including vpn,nat,dmz,bpdu guard and static routes? Or does the asa go in depth like routers dealing with distribution networks, or has configurations for bgp since it sits at the edge of a network?

  • @NegroRotary
    @NegroRotary 2 ปีที่แล้ว

    I'm actually reading this book, it will be great with this video

    • @doncrawley
      @doncrawley 2 ปีที่แล้ว +1

      Thank you!

    • @NegroRotary
      @NegroRotary 2 ปีที่แล้ว

      @@doncrawley no, Thank you!

  • @atulgoswami7642
    @atulgoswami7642 6 ปีที่แล้ว

    great explanation

  • @Eagle-pe9pg
    @Eagle-pe9pg 5 ปีที่แล้ว

    awesome video thank you

  • @meischoice
    @meischoice 8 ปีที่แล้ว

    I'm going to buy the updated version of this book

  • @dodonohoe30
    @dodonohoe30 2 ปีที่แล้ว

    Great videos... do you have any videos on enabling FQDN lookup on ASA policies? Im trying to understand can it be managed via GUI or CLI only?

  • @staceymarcus9647
    @staceymarcus9647 6 ปีที่แล้ว +1

    Would be nice to show the initial connection to the computer, how you get to the config screen.

  • @soundtraining
    @soundtraining  11 ปีที่แล้ว

    Go to the Cisco website and search on the term "SMARTnet Services". They've got a lot of information about it there. Alternatively, you can ask your Cisco reseller about it. If they're a Cisco-authorized reseller, they can sell you the service. It's not very expensive for a 5505 and well worth it. Good luck!

  • @moryantounta3259
    @moryantounta3259 11 ปีที่แล้ว

    great video.

  • @moryantounta3259
    @moryantounta3259 11 ปีที่แล้ว

    great video

  • @efreneo
    @efreneo 8 ปีที่แล้ว

    Hi thank you for your video, Im my job they are asking me to upgrade from asa 5510 to asa 5512-x could you tell me some advices on how to accomplish this, since I have no experience with cisco routers.
    What I was planning to do is to make a copy of the configuration the old firewall has and send it to the new firewall, I could take the copy of the configuration the same way as a router? with a hyperterminal and a ftp server so I can save it and then pass it to the new firewall?
    Thanks in advance.

  • @tonnyhermoyo513
    @tonnyhermoyo513 11 ปีที่แล้ว

    Oo..may (is in expression). Thanks goodness you told me ahead of time b4 trouble begin...do you have any info of how to buy an adequate device Don? And how do I get SmartNet service contract from Cisco? Any suggestion would have really appreciated. Thanks.

  • @hatimgadi2167
    @hatimgadi2167 5 ปีที่แล้ว

    good video, useful

  • @rbapitter
    @rbapitter 10 ปีที่แล้ว

    great vid

  • @babakea8444
    @babakea8444 7 ปีที่แล้ว

    oh thank you very much

  • @wahidny
    @wahidny 8 ปีที่แล้ว

    Anything for SNMP? Great job on the videos:)

  • @onefishwonder3366
    @onefishwonder3366 7 ปีที่แล้ว

    What is the CLI command for a DHCP outside route? My ASA was set up for a static outside route and now I want to change it back to DHCP.
    Thank you

  • @soundtraining
    @soundtraining  11 ปีที่แล้ว

    Oh, also, version 9 requires 256MB flash, so you would have to upgrade that, as well.

  • @harpreetsingh-kk7jz
    @harpreetsingh-kk7jz 5 ปีที่แล้ว

    Thank you

  • @Vjoshu87
    @Vjoshu87 9 ปีที่แล้ว

    Hello, Mr. Crawley,
    I am familiar with Cisco and I'm more pro on Windows. I want to migrate to network (Cisco) side from system (Windows) side and I need your suggestions about what all should be the mandatory knowledge or skills I should brush up for a Network Admin job. I'm trying to polish my resume with cisco now.
    I am CCNA and preparing for CCSP.
    Thank you for the tutorial and wish you " Happy Holidays ".

  • @BillyBufter
    @BillyBufter 10 ปีที่แล้ว +1

    Hi, I have a question re: firewalls. For Cisco firewall, is this an actual device or is it both where you can configure layer 3 routers as a firewall? Is there training for this within the ccna, ccnp for routing & switch?
    Thanks

    • @gauravdeepsingh507
      @gauravdeepsingh507 10 ปีที่แล้ว

      Hi Billy, the answer to your question is ZBF (Zone Based Firewall), its a technology where you configure L3 routers as a Firewall. But Cisco Firewall should be specifically used as the major Firewall device.

  • @MuhammadKhan-yl7mt
    @MuhammadKhan-yl7mt 10 ปีที่แล้ว

    thank you

  • @4runnerdiego
    @4runnerdiego 6 ปีที่แล้ว

    Like to see more videos from the Author

  • @bskwaj
    @bskwaj 10 ปีที่แล้ว +1

    Don, you have a great voice for training. :-)
    I have a default gateway question. I'm building a home lab network with 2 domain controllers and a dhcp server. I want to connect this all to the internet through my ASA 5505. Following your video and using the PAT configuration you described, would the outside interfce of the ASA 5505 become the default gateway for all servers and hosts in the network? Do I need to put a router between the ASA 5505 and the ISP connection? Is the ASA 5505 basically acting as a router in this case?
    What other default gateway advice can you reveal when using the ASA 5505?
    Thanks, bennie

    • @soundtraining
      @soundtraining  10 ปีที่แล้ว

      Bennie, the default gateway is the interface through which a device connects to the rest of the world. It must be an interface on a network already known to the device. In your scenario, the default gateway for the servers and hosts in your network will be the inside interface of your 5505. No, it's not necessary to put a router between the ASA and the ISP. Yes, the ASA is acting as a router. Other advice? Well, you normally configure only one default gateway on each device. Since you're using a DHCP server, just configure it to hand out the ASA's inside interface IP address as the default gateway and you should be set. I just wrote a blog post which might be helpful for you. It's at blog.soundtraining.net/2014/02/what-is-default-gateway.html Good luck!

    • @bskwaj
      @bskwaj 10 ปีที่แล้ว

      soundtraining.net Oh, I knew that... the Inside interface will be the default gateway, not the outside. D'oh... And, right, I will have the DHCP server hand out that IP. Thanks for the clarification that the ASA will be acting as a router there. And thanks for the quick reply. I'll check out your blog.
      Have a great day. Oh, and I bought your book sometime ago and, since I've discovered your videos, I'll start actually reading it! ;-)

  • @MegaMido777
    @MegaMido777 5 ปีที่แล้ว

    Thanks 😊

  • @mohammedzldjali6015
    @mohammedzldjali6015 8 ปีที่แล้ว

    Dear Thanks for you video. From where can I get all your videos. Could you please guide me!!!!

  • @LK-pc4sq
    @LK-pc4sq 5 ปีที่แล้ว

    Don do you offer these classes in the evening? Will you expand these service into south king county?

  • @SunnySingh-kk1oe
    @SunnySingh-kk1oe 9 ปีที่แล้ว

    Really nice video
    Thanks

  • @mangeshsalunkhejaijaijagan9073
    @mangeshsalunkhejaijaijagan9073 8 ปีที่แล้ว

    Nice, video.. where I will see advance and latest video for Cisco ASA firewall

  • @surendharbece
    @surendharbece 3 ปีที่แล้ว

    Thank U

  • @FerretWithChainsaw
    @FerretWithChainsaw 8 ปีที่แล้ว

    I am trying to access the ASDM through IE, but come up with "Turn on SSL 3.0, TLS 1.0, TLS 1.1, TLS 1.2 in advanced settings". I have made sure that those are enabled, but still no luck.

  • @jasonsarrio6019
    @jasonsarrio6019 5 ปีที่แล้ว

    I have a question I just got a ASA5510 I did everything in this video i have an issue with trying to connect with the gui I try conecting the ASA to my router to link 0 an my computer to link 1 an still not able to access it am i doing it wrong or have it connected wrong ?

  • @JohnJLillie
    @JohnJLillie 6 ปีที่แล้ว

    What is the best SOHO ASA that uses IPv6?

  • @michalbarinka9218
    @michalbarinka9218 2 ปีที่แล้ว

    Can you advice where to position this firewwall 5505, before or after the ISP Router? we have just small office with approximately 5 pc + some small devices. Thank you

  • @ricardsonwilliams
    @ricardsonwilliams 10 ปีที่แล้ว

    I just received mine today, and the default configuration I should able to access, but I cannot access from windows 8/Mac OS X the 192.168.1.1/admin, after look about this issue I found a thread in cisco forum about this problem, I have to request a "free" license after apply the license I had to run the below command after add the license.
    conf t
    ssl encryption aes256-sha1 aes128-sha1 3des-sha1 des-sha1
    exit

  • @pheladi202
    @pheladi202 8 ปีที่แล้ว

    how to configure access list in cisco ASA 5505 firewall?

  • @johnmmmm431
    @johnmmmm431 5 ปีที่แล้ว

    soundtraining, question if my network is on a 10.1.x.x should my inside interface match my 10.1.x.x

  • @sazger
    @sazger 3 ปีที่แล้ว +1

    Is there any way to obtain the ASDM software? I am unable to download on the Cisco website

  • @shazzeyschannel1953
    @shazzeyschannel1953 10 ปีที่แล้ว

    Great video, Don. Is the use of ASA as an internal firewall a valid config? No NAT or security levels. The default config being that nothing gets through - like other firewalls (Check Point, for example).

    • @DonCrawleyAuthorSpeaker
      @DonCrawleyAuthorSpeaker 10 ปีที่แล้ว

      That's kind of a hard question to answer. If you run the command "config factory-default" on an ASA, it configures security levels and NAT (PAT). So, I guess the answer to your question is "It depends." It depends on what your objective is with the firewall. Sorry I can't provide a better answer, but that's an honest answer.

  • @CiZiK22
    @CiZiK22 8 ปีที่แล้ว

    Really nice video, thanks for the explanations!
    Greetings from Paris.

  • @jbham
    @jbham 6 ปีที่แล้ว

    why would they put in ports for future use? I'd think they'd have at least one USB port dedicated for rescue configuration scenarios. Also, why would Cisco use security levels instead of security zones?

  • @nimishak4119
    @nimishak4119 3 ปีที่แล้ว +1

    15:57 I am new to Cisco but I did whatever you said step by step but I can not get into the ASA which gives me "Can't reach the page" error message.

  • @virabhadra007
    @virabhadra007 10 ปีที่แล้ว

    nice

  • @emmanueloluwayemisi
    @emmanueloluwayemisi 8 ปีที่แล้ว

    Please i kindly need help for ISE iso image to build my CCNP Security Study lab. thank you in advance.

  • @tonnyhermoyo513
    @tonnyhermoyo513 11 ปีที่แล้ว

    Hi Dan,
    I want to make sure b4 I purchase ASA5505. Can you recommend for me that need it for my own home lab? I found at eBay version 7.2(3) Device Manager ver 5.2(3). The device got 256MB/128MB flash and up to 10 users license. Is this ok? Can I upgrade this device to ver. 9.0, ASDM ver. 7.0? If I can get the right stuff I also interested in buying your ASA Security book at Amazon. But first please advise me do the right thing Don. Thanks a lot for your time.

  • @nsah44
    @nsah44 6 ปีที่แล้ว

    How did you access the router ?????????

  • @sword540
    @sword540 9 ปีที่แล้ว

    thank you for this efforts but can i ask you an advice if i don't have ASA and i want to have simulator to practice or virtual appliance or any tools that i can use to play with ASA if youhave any idea please let me know . thanks again

    • @rendog311rendog2
      @rendog311rendog2 9 ปีที่แล้ว +1

      You can use the simulator from cisco called Cisco Packet Tracer, in the new version a ASA is included

  • @CasiodorusRex
    @CasiodorusRex 2 ปีที่แล้ว

    Do I need to be disconnected from WIFI when trying to connect to the ASDM and also do I need to modify the network adapter ip address?

  • @joshjwolff
    @joshjwolff 10 ปีที่แล้ว

    I setup a Cisco ASA, and now running a vulnerability scan on my network I'm getting an error of "SSL Certificate Weak Public Key Strength - TCP:443 - (1024)" with the IP of the ASA 10.1.10.1; I don't have an SSL VPN setup on this ASA, do you know how I can resolve this error in my vulnerability scan?

  • @xforney
    @xforney 2 ปีที่แล้ว

    I have a asa5505 and also windows 10 and 11. The ASDM will not install on either. Is there a way I can install the ASDM software that I may follow your video?

  • @jameschowen9761
    @jameschowen9761 9 ปีที่แล้ว

    Hi Don, are you able to use ASA 5505 with a dyanmic IP supplied by an ISP or does it need a static IP?
    Thanks

    • @soundtraining
      @soundtraining  9 ปีที่แล้ว +1

      James Chowen Hi James, my apologies for the delayed response to your message. Just now saw it. Yes, you can use the ASA with a dynamically assigned address. On the outside interface, use the command "ip add dhcp setroute". Thanks for your question.