Re: [cisco-voip] Expressway E Firewall Rule Activation

2019-04-30 Thread Ryan Huff
@buffalo.edu>> Cc: cisco-voip@puck.nether.net<mailto:cisco-voip@puck.nether.net> Subject: Re: [cisco-voip] Expressway E Firewall Rule Activation Adam, I certainly didn't mean to imply the, "Expressway Edge on a Stick" method doesn't work, though out of pure technical curiosi

Re: [cisco-voip] Expressway E Firewall Rule Activation

2019-04-30 Thread Brian Meade
estarts the guest. >> >> >> >> That all being said the worst that we have seen are various SSH attempts >> (on any port, the zone tunnel, administrative SSH, doesn’t matter) until >> the rules are put back up. We could tighten them on the border once that >&g

Re: [cisco-voip] Expressway E Firewall Rule Activation

2019-04-30 Thread Anthony Holloway
in a maintenance window); its easier to troubleshoot, >> easier to install, easier to support and easier to secure. >> >> Though, I suspect I'm, "preaching to the choir", lol . All good my >> friend. >> >> Thanks, >> >> Ryan >> >&g

Re: [cisco-voip] Expressway E Firewall Rule Activation

2019-04-30 Thread Pawlowski, Adam
like to post and see what I can learn, especially from superstars such as yourself ☺ Best, Adam Pawlowski SUNYAB NCS From: Ryan Huff Sent: Tuesday, April 30, 2019 12:09 PM To: Pawlowski, Adam Cc: cisco-voip@puck.nether.net Subject: Re: [cisco-voip] Expressway E Firewall Rule Activation Adam

Re: [cisco-voip] Expressway E Firewall Rule Activation

2019-04-30 Thread Ryan Huff
oir", lol . All good my friend. Thanks, Ryan From: Pawlowski, Adam mailto:aj...@buffalo.edu>> Sent: Tuesday, April 30, 2019 11:36 AM To: 'Ryan Huff' Cc: cisco-voip@puck.nether.net<mailto:cisco-voip@puck.nether.net> Subject: RE: [cisco-voip] Expressway E

Re: [cisco-voip] Expressway E Firewall Rule Activation

2019-04-30 Thread Anthony Holloway
> Though, I suspect I'm, "preaching to the choir", lol . All good my > friend. > > Thanks, > > Ryan > > -- > *From:* Pawlowski, Adam > *Sent:* Tuesday, April 30, 2019 11:36 AM > *To:* 'Ryan Huff' > *Cc:* cisco-voip@pu

Re: [cisco-voip] Expressway E Firewall Rule Activation

2019-04-30 Thread Ryan Huff
Look at that, you did say. I just "tl;dr"'ed it hahah -Ryan From: cisco-voip on behalf of Ryan Huff Sent: Tuesday, April 30, 2019 12:08 PM To: Pawlowski, Adam Cc: cisco-voip@puck.nether.net Subject: Re: [cisco-voip] Expressway E Firewall Rule

Re: [cisco-voip] Expressway E Firewall Rule Activation

2019-04-30 Thread Ryan Huff
' Cc: cisco-voip@puck.nether.net Subject: RE: [cisco-voip] Expressway E Firewall Rule Activation Ryan, The “tl;dr” is that we were sort of given the recommendation by Cisco to just run it with the single interface given our environment and requirements, and hasn’t given us any trouble th

Re: [cisco-voip] Expressway E Firewall Rule Activation

2019-04-30 Thread Ryan Huff
That seems odd and not been my experience. Let me ask; why are you using the application firewall rather than the actual firewall (another reason all our edge’s should be using dual interfaces with LAN1 and LAN2 in their own separate security zones)? Is there a reason you have to, in other