Cisco ASA Detection

A Cisco ASA specific detection is currently available via three methods:

  1. Authenticated SSH login to the appliance
  2. SSL VPN / WebVPN HTML Login page via HTTP
  3. SNMP sysDescr

A SSH login (1.) needs to be configured separately in your scan by following Authenticated Scan using Local Security Checks.

For SNMP (3.) the above might be required too if the service isn’t using a “public” community.

Generally i might be also possible that the mentioned methods above are missing the detection due to unexpected results / answers. In this case it could be required that you need to provide more information (like a snmpwalk against the SNMP service or the content of a HTTP login page) so that the Detection can be updated.

Additionally you could also have a look at your reports for the information mentioned here which could provide additional information about your target which could help to update / improve the detection:

1 Like