<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"> 
  <channel>
  <title>Adaptive Security Device Manager Hot Issues from Cisco TAC</title>
  <link>http://www.cisco.com/en/US/customer/products/sw/voicesw/ps556/products_tech_note09186a0080937324.shtml</link>
  <description>Hot Issues from Cisco TAC.  Please click the link for complete details.</description>
  <language>en-us</language>

  <managingEditor>wsisk@cisco.com (Wes Sisk)</managingEditor>
  <webMaster>news-at-cisco-rss@cisco.com (Cisco Newsroom)</webMaster>
  <pubDate>Mon, 13 Feb 2012 11:31:02 EST</pubDate>
  <lastBuildDate>Mon, 13 Feb 2012 11:31:02 EST</lastBuildDate>
  <generator>PERL</generator>

  <docs>http://www.cisco.com/en/US/customer/products/sw/voicesw/ps556/products_tech_note09186a0080937324.shtml</docs>
  <ttl>10080</ttl>

<item>
<title>Access rule description replication issue, Fixed CSCtn88072</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtn88072</link>
<description>&lt;B&gt;Symptom:&lt;/B&gt;
description (remark) line for rule is replicated multiple times.
&lt;br&gt;
&lt;B&gt;Conditions:&lt;/B&gt;
using same text on multiple lines of the description (remark) field.
&lt;br&gt;
&lt;B&gt;Workaround:&lt;/B&gt;
don&#39;t use same text on multiple lines of the rule description (remark).



</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtn88072</guid>
</item>
<item>
<title>ASDM Launcher does not work with JAVA version 7., Fixed CSCts17526</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCts17526</link>
<description>&lt;B&gt;Symptom:&lt;/B&gt;

ASDM Launcher hangs when JAVA version 7 is used. However, it is still accessible from the browsers. The following exception is seen:

&quot;Exception in thread &quot;AWT-EventQueue-0&quot; java.lang.ClassCastException: sun.security.ssl.X509TrustManagerImpl cannot be cast to com.sun.net.ssl.internal.ssl.X509ExtendedTrustManager&quot;
&lt;br&gt;
&lt;B&gt;Conditions:&lt;/B&gt;

Using JAVA version 7.
&lt;br&gt;
&lt;B&gt;Workaround:&lt;/B&gt;

Use JAVA version 6 or access ASDM from the browser.


</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCts17526</guid>
</item>
<item>
<title>&quot;TCP timeout&quot; should be modified &quot;Timeout&quot; on ASDM, Open CSCtx79284</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx79284</link>
<description>&lt;B&gt;Symptom:&lt;/B&gt;
If user changes TCP Timeout field configuration on ASDM(Configuring -&gt; Firewall -&gt; Service Policy Rules -&gt; Edit Service Policy Rule -&gt; Rule Actions -&gt; Connection Settings), this configuration is applied not only TCP but any protocols. 
Therefore this &quot;TCP Timeout&quot; may bring misunderstanding, thus &quot;TCP timeout&quot; should be modified &quot;Timeout&quot;
&lt;br&gt;
&lt;B&gt;Conditions:&lt;/B&gt;
NA
&lt;br&gt;
&lt;B&gt;Workaround:&lt;/B&gt;
NA

</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx79284</guid>
</item>
<item>
<title>ASDM: Backup/restore of startup-config breaks hidden passwords and keys, Fixed CSCtf33394</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtf33394</link>
<description>&lt;B&gt;Symptom:&lt;B&gt;

When doing a backup and restore of the ASA&#39;s startup config via ASDM, keys and passwords that are normally obfuscated by asterisks (*****) are replaced with the literal string &quot;*****&quot; and become invalid after a reload. This includes (but is not limited to) the following ASA features:

Failover keys
AAA server keys and LDAP passwords
VPN pre-shared keys
SNMP community strings
&lt;br&gt;
&lt;B&gt;Conditions:&lt;/B&gt;

The startup-config must be both backed up and restored via ASDM, and the ASA must be reloaded.
&lt;br&gt;
&lt;B&gt;Workaround:&lt;/B&gt;

Perform the backup and restore manually via the CLI.

Backup:
copy startup-config &lt;destination&gt;

Restore:
copy &lt;source&gt; startup-config
reload

</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtf33394</guid>
</item>
<item>
<title>ASDM Should not Push &#39;NFS&#39; Port-Objects to FWSM and Earlier ASA/PIX SW, Fixed CSCsz48612</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCsz48612</link>
<description>&lt;B&gt;Symptom:&lt;/B&gt;

When managing a Firewall Service Module (FWSM) with Adaptive Security Device Manager (ASDM), creating an Access Control List (ACL) or object-group involving Network File System (NFS) port TCP/2049 results in an error message. Same problem occurs with Adaptive Security Appliance (ASA) and PIX Firewall software before 8.0(3).
&lt;br&gt;
&lt;B&gt;Workaround:&lt;/B&gt;

Use Command Line Interface (CLI) to configure the relevant ACE or object by referencing port TCP/2049.

</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCsz48612</guid>
</item>
<item>
<title>Java exception for read-only user priv 5 - Access rules panel hangs, Fixed CSCtx73665</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx73665</link>
<description>&lt;B&gt;Symptom:&lt;/B&gt;
Access-rules panel hangs at FWSM ASDM, shows empty
&lt;br&gt;
&lt;B&gt;Conditions:&lt;/B&gt;
FWSM ASDM when LOCAL authorization enabled with privilege 5 read-only user. Java exception can happen.
&lt;br&gt;
&lt;B&gt;Workaround:&lt;/B&gt;
none. restart ASDM

</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx73665</guid>
</item>
<item>
<title>ASDM: DAP Policy name can not be changed once created, Fixed CSCtx69529</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx69529</link>
<description>&lt;B&gt;Symptom:&lt;/B&gt;
In ASDM DAP Policy name can not be changed once the policy is created
&lt;br&gt;
&lt;B&gt;Conditions:&lt;/B&gt;
Occurs once the DAP policy is created 
&lt;br&gt;
&lt;B&gt;Workaround:&lt;/B&gt;
None as of now


</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx69529</guid>
</item>
<item>
<title>ACL order in ASDM is not matching CLI, Fixed CSCtx46042</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx46042</link>
<description>&lt;B&gt;Symptom:&lt;/B&gt;

ACL order in ASDM is not matching order in CLI
&lt;br&gt;
&lt;B&gt;Conditions:&lt;/B&gt;

ASASM and ASDM 6.5.1
&lt;br&gt;
&lt;B&gt;Workaround:&lt;/B&gt;

Use CLI to manage ASASM



</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx46042</guid>
</item>
<item>
<title>DOC : Need to remove CSCtt45459 from Resolved Caveats list, Fixed CSCtx42366</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx42366</link>
<description>&lt;B&gt;Symptom:&lt;/B&gt;
There is CSCtt45459 in Resolved Caveats list of Release-Note of ASDM 6.4(x).

http://www.cisco.com/en/US/customer/docs/security/asa/asa84/asdm64/release/notes/asdmrn64.html

But CSCtt45459 is re-opened and have not fixed yet.
&lt;br&gt;
&lt;B&gt;Conditions:&lt;/B&gt;
&lt;br&gt;
&lt;B&gt;Workaround:&lt;/B&gt;


</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx42366</guid>
</item>
<item>
<title>ASDM: Manual nat configuration may conflict with ip local pool, Fixed CSCtx84041</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx84041</link>
<description>&lt;B&gt;Symptom:&lt;/B&gt;
Manual nat configuration via ASDM may show conflict with ip local pool configured.
&lt;br&gt;
&lt;B&gt;Conditions:&lt;/B&gt;
This was first identified on ASDM version 6.4.5(206)
&lt;br&gt;
&lt;B&gt;Workaround:&lt;/B&gt;
User CLI to configure the line.

</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx84041</guid>
</item>
<item>
<title>ASDM not sending right command  for deleting  dhcp server from the list, Fixed CSCtx70202</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx70202</link>
<description>&lt;B&gt;Symptom:&lt;/B&gt;
Not able to delete the dhcp server value in case we have multiple dhcp servers defined under the tunnel-group
&lt;br&gt;&lt;B&gt;Conditions:&lt;/B&gt;
Using ASDM
&lt;br&gt;&lt;B&gt;Workaround:&lt;/B&gt;
Use CLI

</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx70202</guid>
</item>
<item>
<title>ASDM Unable to Edit Connection Profile Authen/Author Scripts, Fixed CSCtx79097</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx79097</link>
<description>&lt;B&gt;Symptom:&lt;/B&gt;

From a VPN Connection Profile I click on the Advanced-&gt;Secondary Authentication or Authorization section.  I select the script I wish to modify and click Edit.  Nothing Happens
&lt;br&gt;
&lt;B&gt;Conditions:&lt;/B&gt;

ASDM
VPN Secondary Authentication or Authorization Script
&lt;br&gt;
&lt;B&gt;Workaround:&lt;/B&gt;

Create a new script.
Paste in the existing script plus any modifications.
&lt;br&gt;
&lt;B&gt;Further Problem Description:&lt;/B&gt;

If one is reviewing the Java Conole one will see a Java NullPointer Exception traceback
java.lang.NullPointerException
	at bj8.g(bj8.java:152)
	at bj8.f(bj8.java:78)
	at bj8.&lt;init&gt;(bj8.java:64)
	at bja.c(bja.java:447)
	at bja.a(bja.java:78)

</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx79097</guid>
</item>
<item>
<title>ACL Remarks multiply in configuration,   CSCtx45992</title>
<link>http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx45992</link>
<description>&lt;B&gt;Symptom:&lt;/B&gt;

ACL remarks that are being deleted from ASDM seem to multiply
&lt;br&gt;
&lt;B&gt;Conditions:&lt;/B&gt;

ASASM and ASDM 6.5.1
&lt;br&gt;
&lt;B&gt;Workaround:&lt;/B&gt;

Use command line to manage configuration



</description>
<guid isPermaLink="true">http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;bugId=CSCtx45992</guid>
</item>
   
</channel>
</rss>

