Posts

Reconfigure Cisco ASA 5506-X Firewall to Add Support for AnyConnect (MACOS)

Subject: Reconfigure Cisco ASA 5506-X Firewall to Add Support for AnyConnect (MACOS)
Author: Mr. Turritopsis Dohrnii Teo En MingCountry: SingaporeDate: 12 Oct 2020 Monday Singapore Time
Type of Publication: Plain TextDocument Version: 20201012.01
Cisco ASA 5506-X Firewall CLI commands:
copy ftp://anonymous@<IP address of FTP Server>/ anyconnect-macos-4.9.02028-webdeploy-k9.pkg
show flash
config t
webvpn
no anyconnect image flash:/anyconnect-win-4.9.00086-webdeploy-k9.pkg
anyconnect image disk0:/anyconnect-win-4.9.00086-webdeploy-k9.pkg 1
anyconnect image disk0:/anyconnect-macos-4.9.02028-webdeploy-k9.pkg 2
copy run start


REFERENCES==========
[1] https://lkml.org/lkml/2020/10/12/126
[2] http://lkml.iu.edu/hypermail/linux/kernel/2010.1/03125.html
[3] https://marc.info/?l=linux-kernel&m=160248734717215&w=2
[4] https://lwn.net/ml/linux-kernel/e48476d68aafde65c634c3105e5131b7%40teo-en-ming.com/
[5] http://lists.linuxfromscratch.org/pipermail/lfs-chat/2020-October/029158.html

Upgraded Symantec Endpoint Protection Manager from 14.0 to 14.3 for Customer

Upgraded Symantec Endpoint Protection Manager from 14.0 to 14.3 for Customer

US govt orders federal agencies to patch dangerous Zerologon bug by Monday

If we put computers in our brains, strange things might happen to our minds

Teo En Ming's International Postings

[YOUTUBE] [SUB] 幕後花絮BTS Vlog [天亮請睜眼] 翻唱MV | Stephy Yiwen

[YOUTUBE] 独家花絮:赵露思林雨申超欲吻戏,太会亲了 | 我,喜欢你 Dating in the Kitchen

One sees his flying dream cut short, other SIA pilots become delivery drivers, retire early

Open source's Eric Raymond: Windows 10 will soon be just an emulation layer on Linux kernel

[YOUTUBE] 藍星蕾 Amber Na【想見你想見你想見你Miss You 3000】Cover 八三夭831【想見你 Someday or One Day】片尾曲

Opposition politician Lim Tean arrested for criminal breach of trust, investigated for unlawful stalking

Renew 90-day free Let’s Encrypt SSL Certificate for SSL VPN on Cisco ASA 5506-X Firewall

Subject: Renew 90-day free Let’s Encrypt SSL Certificate for SSL VPN on Cisco ASA 5506-X Firewall
SSL Certificate Renewal Completed By: Mr. Turritopsis Dohrnii Teo En MingDate of Renewal: 9 Oct 2020 Friday Singapore TimeDate of Expiry: 8 Jan 2021 Singapore TimeCountry: Singapore
Simply follow the renewal instructions at the following link.
[ARTICLE] ASA 8.x: Renew and Install the SSL Certificate with ASDM
Link: https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/107956-renew-ssl.html
Get your ***FREE*** 90-day SSL certificates at
https://zerossl.com/


REFERENCES==========
[1] https://lkml.org/lkml/2020/10/11/72
[2] http://lkml.iu.edu/hypermail/linux/kernel/2010.1/02698.html
[3] https://marc.info/?l=linux-kernel&m=160241891203300&w=2
[4] https://lwn.net/ml/linux-kernel/e74b898d82cea7f4007729ba3b8c32a0%40teo-en-ming.com/
[5] http://lists.linuxfromscratch.org/pipermail/lfs-chat/2020-October/029157.html

Configure Cisco ASA 5506-X Firewall for M1 Leased Line

Subject: Configure Cisco ASA 5506-X Firewall for M1 Leased Line
Author: Mr. Turritopsis Dohrnii Teo En MingCountry: SingaporeDate: 11 October 2020 Sunday Singapore Time
Type of Publication: Plain TextDocument Version: 20201011.01
Cisco ASA Firewall CLI commands:
enableconf tinterface GigabitEthernet1/8 (M1 Leased Line connected to Port 8)no shutip address aaa.bbb.108.212 255.255.255.248nameif M1-Leased-Linesecurity-level 50
route outside 0.0.0.0 0.0.0.0 aaa.bbb.ccc.121 5 track 1route M1-Leased-Line aaa.bbb.108.0 255.255.255.0 aaa.bbb.108.209 1
object network Quantumsubnet aaa.bbb.108.0 255.255.255.0
same-security-traffic permit intra-interface
access-list nat_inside_quantum extended permit ip aaa.bbb.23.0 255.255.255.0 aaa.bbb.108.0 255.255.255.0
access-list nat_inside_quantum extended permit ip aaa.bbb.108.0 255.255.255.0 aaa.bbb.23.0 255.255.255.0
Teo En Ming’s Original NAT rule (partially correct only):
nat (inside,M1-Leased-Line) source static NETWORK_OBJ_aaa.bbb.23.0_24 NETWORK_OBJ_aaa.bbb.…

Configure Cisco ASA 5506-X Firewall to Send Syslog Messages to Kiwi Free Syslog Server 9.7.0

Subject: Configure Cisco ASA 5506-X Firewall to Send Syslog Messages to Kiwi Free Syslog Server 9.7.0
Author: Mr. Turritopsis Dohrnii Teo En Ming (TARGETED INDIVIDUAL)Country: SingaporeDate: 20 September 2020 Sunday Singapore Time
Type of Publication: Plain Text
Document Version: 20200920.01
STEPS=====
1. Launch Kiwi Free Syslog Server 9.7.0 Installer (by Solar Winds) on the Active Directory Domain Controller (Windows Server 2016 Standard).
2. Click "I Agree" on the License Agreement window.
3. Choose "Install Kiwi Syslog Server as a Service". Click Next.
4. Install the Service using: The LocalSystem Account. Click Next.
5. Select the type of install: Normal. Click Next.
6. Click Install on the Choose Install Location window.
7. Check "Run Kiwi Syslog Server 9.7.0". Click Finish.
8. On the dialog showing "Kiwi Syslog free version supports up to 5 message sources. Please define them under Inputs in Setup.", click OK.
9. Click Setup.
10. Inputs > UDP
Check &q…

Symantec Endpoint Protection (SEP) has the tendency to corrupt Google Chrome

To resolve the problem, you need to use Symantec CleanWipe to uninstall Symantec Endpoint Protection. After rebooting your computer, reinstall Symantec Endpoint Protection again.

I learnt a new tool from my colleague today.

netplwiz.exe
It is a tool which is used for making changes to your user accounts in Windows.

Basic System Setup of Teo En Ming’s Sophos SG 115 rev 2 Firewall

Subject: Basic System Setup of Teo En Ming’s Sophos SG 115 rev 2 Firewall

Author: Mr. Turritopsis Dohrnii Teo En Ming (TARGETED INDIVIDUAL)
Country: Singapore
Date: 13 September 2020 Sunday Singapore Time

Type of Publication: PDF Manual
Document Version: 20200913.01

INTRODUCTION
============

I bought this refurbished Sophos SG 115 rev 2 firewall for SGD$120 at Farrer Park MRT Station (Singapore) on 13 September 2020 Sunday at 1.30 PM Singapore Time.

Sophos firewall appliances are based on the Linux kernel and open source software.

Mr. Turritopsis Dohrnii Teo En Ming is a Linux and open source software enthusiast.

The following screenshots and photos will be shown:

1.Photos of the front, back and bottom of the Sophos SG 115 rev 2 firewall
2.Initial login of the Sophos SG 115 rev 2 firewall
3.Factory reset of the Sophos SG 115 rev 2 firewall
4.Basic System Setup of the Sophos SG 115 rev 2 firewall

I will be publishing manuals for advanced configuration of the Sophos SG 115 rev 2 firewal…

Bought 6 pairs of really cheap LAN cables for only SGD$9 (SGD$1.50 each)

Image

I have just bought tp-link 8-port Gigabit Desktop Switch TL-SG108 for SGD$36 ($2 Discount)

Image

I have just bought Arnold Palmer black leather shoes at OG Chinatown for SGD$118.30 on 13 Sep 2020 Sunday

I have just bought Arnold Palmer black leather shoes at OG Chinatown for SGD$118.30 on 13 Sep 2020 Sunday

I have just bought refurbished Sophos SG 115 revision 2 firewall for SGD$120 on 13 Sep 2020 Sunday

Image

[YOUTUBE] The Era of Qianlong Dynasty

Image

Removed DHCP Server Role on Windows Server and Enabled DHCP Server on Sophos SG210 Firewall for Customer on 11 Sep 2020

Removed DHCP Server Role on Windows Server and Enabled DHCP Server on Sophos SG210 Firewall for Customer on 11 Sep 2020

6 Free Syslog Servers for Windows and Linux/Unix

How to DDoS | DoS and DDoS Attack tools

Teo En Ming's Home Computer Network Topology Diagram

Image

Can I manually setup a Syslog server?

Subject: Can I manually setup a Syslog server?

Good day from Singapore,

I have just implemented and setup the following for an investment company (company name is confidential) in Singapore on 12 Sep 2020 Saturday Singapore Time.

(1) Installed and configured Kiwi Free Syslog Server 9.7.0 (by Solarwinds) on the Active Directory Domain Controller (Windows Server 2016 Standard).

(2) Configured Cisco ASA 5506-X Firewall's Logging to send and transmit syslog messages to Kiwi Free Syslog Server 9.7.0 on the Windows Server.

(3) Added a firewall rule to open UDP port 514 on the Symantec Endpoint Protection Manager (SEPM) on Windows Server 2016.

So the question I have is, can I manually setup and configure a Syslog Server with GUI using open source syslog daemon, open source tools and any Linux distro?

Thank you very much.





REFERENCES
==========

[1] https://lists.balabit.hu/pipermail/syslog-ng/2020-September/026049.html

[2] https://marc.info/?l=syslog-ng&m=159996432901893&w=2



Basic Configuration of Teo En Ming's Cisco 1941 Router

This message generated a parse failure. Raw output follows here. Please use 'back' to navigate.

From devnull@lkml.org Fri Sep 11 13:53:15 2020
>From mailfetcher  Fri Sep 11 13:48:39 2020
Envelope-to: lkml@grols.ch
Delivery-date: Fri, 11 Sep 2020 13:48:39 +0200
Received: from stout.grols.ch [195.201.141.146] by 72459556e3a9 with IMAP (fetchmail-6.3.26) for <mailfetcher@localhost> (single-drop); Fri, 11 Sep 2020 13:48:39 +0200 (CEST)
Received: from vger.kernel.org ([23.128.96.18]) by stout.grols.ch with esmtp (Exim 4.89) (envelope-from <linux-kernel-owner@vger.kernel.org>) id 1kGhXi-0008Rz-Db for lkml@grols.ch; Fri, 11 Sep 2020 13:48:39 +0200
Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand        id S1725792AbgIKLs1 (ORCPT <rfc822;lkml@grols.ch>);        Fri, 11 Sep 2020 07:48:27 -0400
Received: from ec2-3-21-30-127.us-east-2.compute.amazonaws.com ([3.21.30.127]:51702        "EHLO www.teo-en-ming.com" rhost-flags-OK-OK-OK-OK…

I have just bought refurbished Cisco 1941 router for SGD$130 on 10 Sept 2020 Thursday

Image

France, Japan, New Zealand warn of sudden spike in Emotet attacks

[Youtube] [SUB] 檳城VLOG 美食景點Cuti-Cuti Malaysia by Stephy Yiwen

Image

Set up LACP bonding interface on CentOS 8

The world's largest digital camera has taken the first 3,200 megapixel photo

MP Ang Wei Neng takes 9 yrs to feel like a foreigner in own country when visiting Changi Business Park

European ISPs report mysterious wave of DDoS attacks

The Six Degrees of Separation in the Liew Mun Leong and Parti Liyani case

Parti Liyani case: MOM advisory to Changi Airport Group chairman’s son in 2018 ‘nothing more than just a slap on the wrist’, says Workers’ Party’s Azhar Latip

get router info routing-table in Fortigate Firewall

Super Healthy Lunch on 10 Sep 2020 Thursday: Fish with Rice for SGD$4 Only

Image

[9 Sep 2020 Wed] I completed walking exercise of 3.37 km at Orchard Road, Singapore in 1 hour

[9 Sep 2020 Wed] I completed walking exercise of 3.37 km at Orchard Road, Singapore in 1 hour

[YOUTUBE] Paid Testshoot with Jayley Woo Jiaqi Before She Became a Mediacorp TV Actress

Image

[YOUTUBE] Vanessa Ho Seifuku Shoot 1 of 3 Before She Won Samsung Galaxy Breakthrough Award at Star Search 2019

Image

[8 Sep 2020 Tue] I completed walking exercise of 3.38 km at Orchard Road, Singapore in 1 hour

[8 Sep 2020 Tue] I completed walking exercise of 3.38 km at Orchard Road, Singapore in 1 hour

[7 Sep 2020 Mon] I completed walking exercise of 3.62 km at Orchard Road, Singapore in 1 hour

[7 Sep 2020 Mon] I completed walking exercise of 3.62 km at Orchard Road, Singapore in 1 hour

IP Subnet Calculator

When Singaporeans are unemployed but foreigners have jobs: “It’s not xenophobia”

Pritam Singh holding meet-the-people session at void deck a ‘sad sight to see’

Commit 1 million: The history of the Linux kernel

[The Straits Times] From design director to food delivery rider