To demonstrate configuring IPSec VPN site-to-site on Cisco ASA firewall with IOS version 9.x, we will set up a GNS3 lab as the following diagram. There are two Cisco ASA firewall appliances. HOFW01 locates in head office and BOFW01 locates in branch office. There is one router act as internet. The following is the IP configuration of each

“The Complete Cisco VPN Configuration Guide” is quite old so I wouldn’t recommend it, especially if you have the “all-in-one” book. The “Cisco Firewalls (Cisco Press Networking Technology) by Alexandre M.S.P.” gets good reviews and it’s from 2011.

Last time I used this command we caught one of our users downloading a bunch of files from all over the internet using a P2P program and I saw pages and pages of connections to his IP from the outside. We are using Cisco ASA 5510 with asa706-k8.bin. Thanks for any help.

A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) handler of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to exhaust memory resources on the affected device, leading to a denial of service (DoS) condition. The vulnerability is due to improper resource management