<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: How to emulate Cisco ASA</title>
	<atom:link href="http://blog.gns3.net/2009/12/how-to-emulate-cisco-asa/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.gns3.net/2009/12/how-to-emulate-cisco-asa/</link>
	<description>Technical Blog</description>
	<lastBuildDate>Thu, 27 Oct 2011 17:49:25 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
	<item>
		<title>By: Jon</title>
		<link>http://blog.gns3.net/2009/12/how-to-emulate-cisco-asa/comment-page-3/#comment-4157</link>
		<dc:creator>Jon</dc:creator>
		<pubDate>Thu, 27 Oct 2011 17:49:25 +0000</pubDate>
		<guid isPermaLink="false">http://blog.gns3.net/?p=141#comment-4157</guid>
		<description>To get the ASA to run in transparent mode within my GNS3 instance, I added to the asa/scripts/first_start.sh script provided above:
After:
ifconfig eth0 up
ifconfig eth1 up
Add:
ifconfig eth0 promisc
ifconfig eth1 promisc

Without this, packets weren&#039;t making it up to the ASA process, and were discarded at the nic when running in transparent mode.

That might be obvious to others, but wanted to mention it since I had to search a while for it.</description>
		<content:encoded><![CDATA[<p>To get the ASA to run in transparent mode within my GNS3 instance, I added to the asa/scripts/first_start.sh script provided above:<br />
After:<br />
ifconfig eth0 up<br />
ifconfig eth1 up<br />
Add:<br />
ifconfig eth0 promisc<br />
ifconfig eth1 promisc</p>
<p>Without this, packets weren&#8217;t making it up to the ASA process, and were discarded at the nic when running in transparent mode.</p>
<p>That might be obvious to others, but wanted to mention it since I had to search a while for it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jorge Avelar</title>
		<link>http://blog.gns3.net/2009/12/how-to-emulate-cisco-asa/comment-page-3/#comment-4145</link>
		<dc:creator>Jorge Avelar</dc:creator>
		<pubDate>Mon, 19 Sep 2011 22:49:32 +0000</pubDate>
		<guid isPermaLink="false">http://blog.gns3.net/?p=141#comment-4145</guid>
		<description>this step below does not work for me.

 echo &quot;25159680 ; ibase=16 ; last - 1228b0&quot; &#124; bc &#124; tail -n l
tail: illegal offset -- l
(standard_in) 1: parse error</description>
		<content:encoded><![CDATA[<p>this step below does not work for me.</p>
<p> echo &#8220;25159680 ; ibase=16 ; last &#8211; 1228b0&#8243; | bc | tail -n l<br />
tail: illegal offset &#8212; l<br />
(standard_in) 1: parse error</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Greg</title>
		<link>http://blog.gns3.net/2009/12/how-to-emulate-cisco-asa/comment-page-3/#comment-4081</link>
		<dc:creator>Greg</dc:creator>
		<pubDate>Mon, 28 Feb 2011 17:03:41 +0000</pubDate>
		<guid isPermaLink="false">http://blog.gns3.net/?p=141#comment-4081</guid>
		<description>I am trying the procedure with ASA binary: asa804-k8.bin converted into hex, but when I grep for &quot;1f 8b 08 00 1d&quot; nothing comes up.  Any ideas?

Thanks</description>
		<content:encoded><![CDATA[<p>I am trying the procedure with ASA binary: asa804-k8.bin converted into hex, but when I grep for &#8220;1f 8b 08 00 1d&#8221; nothing comes up.  Any ideas?</p>
<p>Thanks</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Learning Cisco ASA - TechExams.net IT Certification Forums</title>
		<link>http://blog.gns3.net/2009/12/how-to-emulate-cisco-asa/comment-page-3/#comment-966</link>
		<dc:creator>Learning Cisco ASA - TechExams.net IT Certification Forums</dc:creator>
		<pubDate>Sun, 24 Oct 2010 19:39:51 +0000</pubDate>
		<guid isPermaLink="false">http://blog.gns3.net/?p=141#comment-966</guid>
		<description>[...] can use a full ASA image, (GNS3 0.7.2), the previous versions of GNS3 only ran PIX.  Here is the link on the GNS 3 site to get it up and running.. I found version 7 of the ASA image works fine, and [...]</description>
		<content:encoded><![CDATA[<p>[...] can use a full ASA image, (GNS3 0.7.2), the previous versions of GNS3 only ran PIX.  Here is the link on the GNS 3 site to get it up and running.. I found version 7 of the ASA image works fine, and [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Van</title>
		<link>http://blog.gns3.net/2009/12/how-to-emulate-cisco-asa/comment-page-3/#comment-965</link>
		<dc:creator>Van</dc:creator>
		<pubDate>Sun, 17 Oct 2010 06:14:25 +0000</pubDate>
		<guid isPermaLink="false">http://blog.gns3.net/?p=141#comment-965</guid>
		<description>I am so close the getting the asa832-k8 emulate and the asa823-k8, but I need to know were the kernel starts and ends in the asa823-k8.bin so I can yank the kernel from the kernel by determining the skip and count values. Otherwise the I have successfully extracted the initrd and the kernel from the asa832-k8.bin, but keep getting the following error:

 done
Freeing initrd memory: 14077k freed
platform rtc_cmos: registered platform RTC device (no PNP device found)
highmem bounce pool size: 64 pages
HugeTLB registered 4 MB page size, pre-allocated 0 pages
bigphysarea: Allocated 16384 pages at 0xdf800000.
msgmni has been set to 673
io scheduler noop registered
io scheduler anticipatory registered (default)
io scheduler deadline registered
io scheduler cfq registered
pci 0000:00:00.0: Limiting direct PCI/PCI transfers
pci 0000:00:01.0: PIIX3: Enabling Passive Release
pci 0000:00:01.0: Activating ISA DMA hang workarounds
Serial: 8250/16550 driver, 4 ports, IRQ sharing disabled
serial8250: ttyS0 at I/O 0x3f8 (irq = 4) is a 16550A
loop: module loaded
pcnet32.c:v1.35 21.Apr.2008 tsbogend@alpha.franken.de
tun: Universal TUN/TAP device driver, 1.6
tun: (C) 1999-2004 Max Krasnyansky 
Uniform Multi-Platform E-IDE driver
ide_generic: please use &quot;probe_mask=0x3f&quot; module parameter for probing all legacy ISA IDE ports
ide-gd driver 1.18
TCP cubic registered
NET: Registered protocol family 17
RPC: Registered udp transport module.
RPC: Registered tcp transport module.
802.1Q VLAN Support v1.8 Ben Greear 
All bugs added by David S. Miller 
TIPC: Activated (version 1.6.4 compiled Jul 30 2010 16:45:45)
NET: Registered protocol family 30
TIPC: Started in single node mode
Using IPI Shortcut mode
VFS: Cannot open root device &quot;hda1&quot; or unknown-block(0,0)
Please append a correct &quot;root=&quot; boot option; here are the available partitions:
Kernel panic - not syncing: VFS: Unable to mount root fs on unknown-block(0,0)

Does anyone know what I need to configure in GNS3 or change in the first_start.sh or rcS scripts if necessary to make the run completely and load to command line?</description>
		<content:encoded><![CDATA[<p>I am so close the getting the asa832-k8 emulate and the asa823-k8, but I need to know were the kernel starts and ends in the asa823-k8.bin so I can yank the kernel from the kernel by determining the skip and count values. Otherwise the I have successfully extracted the initrd and the kernel from the asa832-k8.bin, but keep getting the following error:</p>
<p> done<br />
Freeing initrd memory: 14077k freed<br />
platform rtc_cmos: registered platform RTC device (no PNP device found)<br />
highmem bounce pool size: 64 pages<br />
HugeTLB registered 4 MB page size, pre-allocated 0 pages<br />
bigphysarea: Allocated 16384 pages at 0xdf800000.<br />
msgmni has been set to 673<br />
io scheduler noop registered<br />
io scheduler anticipatory registered (default)<br />
io scheduler deadline registered<br />
io scheduler cfq registered<br />
pci 0000:00:00.0: Limiting direct PCI/PCI transfers<br />
pci 0000:00:01.0: PIIX3: Enabling Passive Release<br />
pci 0000:00:01.0: Activating ISA DMA hang workarounds<br />
Serial: 8250/16550 driver, 4 ports, IRQ sharing disabled<br />
serial8250: ttyS0 at I/O 0x3f8 (irq = 4) is a 16550A<br />
loop: module loaded<br />
pcnet32.c:v1.35 21.Apr.2008 <a href="mailto:tsbogend@alpha.franken.de">tsbogend@alpha.franken.de</a><br />
tun: Universal TUN/TAP device driver, 1.6<br />
tun: (C) 1999-2004 Max Krasnyansky<br />
Uniform Multi-Platform E-IDE driver<br />
ide_generic: please use &#8220;probe_mask=0x3f&#8221; module parameter for probing all legacy ISA IDE ports<br />
ide-gd driver 1.18<br />
TCP cubic registered<br />
NET: Registered protocol family 17<br />
RPC: Registered udp transport module.<br />
RPC: Registered tcp transport module.<br />
802.1Q VLAN Support v1.8 Ben Greear<br />
All bugs added by David S. Miller<br />
TIPC: Activated (version 1.6.4 compiled Jul 30 2010 16:45:45)<br />
NET: Registered protocol family 30<br />
TIPC: Started in single node mode<br />
Using IPI Shortcut mode<br />
VFS: Cannot open root device &#8220;hda1&#8243; or unknown-block(0,0)<br />
Please append a correct &#8220;root=&#8221; boot option; here are the available partitions:<br />
Kernel panic &#8211; not syncing: VFS: Unable to mount root fs on unknown-block(0,0)</p>
<p>Does anyone know what I need to configure in GNS3 or change in the first_start.sh or rcS scripts if necessary to make the run completely and load to command line?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Van</title>
		<link>http://blog.gns3.net/2009/12/how-to-emulate-cisco-asa/comment-page-3/#comment-925</link>
		<dc:creator>Van</dc:creator>
		<pubDate>Fri, 01 Oct 2010 01:06:54 +0000</pubDate>
		<guid isPermaLink="false">http://blog.gns3.net/?p=141#comment-925</guid>
		<description>I compressed back the initrd, but the asa802 won&#039;t load to command prompt. The asa823 gave me the error missing /dev/tty50 and the asa832 kept restarting, but I need to check if the script was in the asa/scripts/ and that the line in the rcS was changed from /asa/bin/lina_monitor to /asa/scripts/first_start.sh. I may have to find the correct kernel for the asa823 and the asa832. Otherwise the asa802 works with the initrd and vmlinuz obtain when using the unpack.exe from unpack-0.1_win tools I downloaded from the gns3 website.</description>
		<content:encoded><![CDATA[<p>I compressed back the initrd, but the asa802 won&#8217;t load to command prompt. The asa823 gave me the error missing /dev/tty50 and the asa832 kept restarting, but I need to check if the script was in the asa/scripts/ and that the line in the rcS was changed from /asa/bin/lina_monitor to /asa/scripts/first_start.sh. I may have to find the correct kernel for the asa823 and the asa832. Otherwise the asa802 works with the initrd and vmlinuz obtain when using the unpack.exe from unpack-0.1_win tools I downloaded from the gns3 website.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Van</title>
		<link>http://blog.gns3.net/2009/12/how-to-emulate-cisco-asa/comment-page-3/#comment-924</link>
		<dc:creator>Van</dc:creator>
		<pubDate>Thu, 30 Sep 2010 05:31:40 +0000</pubDate>
		<guid isPermaLink="false">http://blog.gns3.net/?p=141#comment-924</guid>
		<description>I did this for the asa805-k8.bin, asa823-k8.bin, and the asa832-k8.bin, but the grep could not find the 1f 8b 08 at the beginning of the files for the asa805-k8.bin, so when I got to the gzip -d I got an error not in gzip format. after getting the asa823-k8.bin and the asa832-k8.bin unzipped I could not find the initrd or the vmlinuz. I also made your script, but I don&#039;t know what to edit in the etc/int.d/rcS and the /asa/bin/lina_monitor.</description>
		<content:encoded><![CDATA[<p>I did this for the asa805-k8.bin, asa823-k8.bin, and the asa832-k8.bin, but the grep could not find the 1f 8b 08 at the beginning of the files for the asa805-k8.bin, so when I got to the gzip -d I got an error not in gzip format. after getting the asa823-k8.bin and the asa832-k8.bin unzipped I could not find the initrd or the vmlinuz. I also made your script, but I don&#8217;t know what to edit in the etc/int.d/rcS and the /asa/bin/lina_monitor.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: tobie</title>
		<link>http://blog.gns3.net/2009/12/how-to-emulate-cisco-asa/comment-page-3/#comment-915</link>
		<dc:creator>tobie</dc:creator>
		<pubDate>Tue, 31 Aug 2010 11:40:53 +0000</pubDate>
		<guid isPermaLink="false">http://blog.gns3.net/?p=141#comment-915</guid>
		<description>guys!!!

i got my 2nd ccie number!

R&amp;S and Security!!

thanks to gns3 team!</description>
		<content:encoded><![CDATA[<p>guys!!!</p>
<p>i got my 2nd ccie number!</p>
<p>R&amp;S and Security!!</p>
<p>thanks to gns3 team!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: tobie</title>
		<link>http://blog.gns3.net/2009/12/how-to-emulate-cisco-asa/comment-page-3/#comment-914</link>
		<dc:creator>tobie</dc:creator>
		<pubDate>Tue, 31 Aug 2010 11:37:55 +0000</pubDate>
		<guid isPermaLink="false">http://blog.gns3.net/?p=141#comment-914</guid>
		<description>innoe,

i made a simple &quot;hack&quot; on my initrd file.
I actually made &quot;two initrd file&quot;, one for the single-mode and the other for multi-mode.

When im studying and doing some testing on multi-mode asa, i will load the multi-mode initrd and start my labs. all well and its great!

the flash file will automatically updates that corresponds to your initrd modes.</description>
		<content:encoded><![CDATA[<p>innoe,</p>
<p>i made a simple &#8220;hack&#8221; on my initrd file.<br />
I actually made &#8220;two initrd file&#8221;, one for the single-mode and the other for multi-mode.</p>
<p>When im studying and doing some testing on multi-mode asa, i will load the multi-mode initrd and start my labs. all well and its great!</p>
<p>the flash file will automatically updates that corresponds to your initrd modes.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sushant</title>
		<link>http://blog.gns3.net/2009/12/how-to-emulate-cisco-asa/comment-page-3/#comment-910</link>
		<dc:creator>Sushant</dc:creator>
		<pubDate>Sun, 15 Aug 2010 14:46:48 +0000</pubDate>
		<guid isPermaLink="false">http://blog.gns3.net/?p=141#comment-910</guid>
		<description>Hi i am facing this problem plz help 

asa(config)# interface ethernet 0/0
asa(config-if)# namei
asa(config-if)# nameif inside
ERROR: open(np/port/id/0/-1) failed.
ERROR: open() failed.
ERROR: Failed to initialize interface inside
ERROR: Add interface failed.
asa(config-if)# no shut
asa(config-if)# no shutdown
Failed to change interface status: cannot get channel
asa(config-if)#



ASAP</description>
		<content:encoded><![CDATA[<p>Hi i am facing this problem plz help </p>
<p>asa(config)# interface ethernet 0/0<br />
asa(config-if)# namei<br />
asa(config-if)# nameif inside<br />
ERROR: open(np/port/id/0/-1) failed.<br />
ERROR: open() failed.<br />
ERROR: Failed to initialize interface inside<br />
ERROR: Add interface failed.<br />
asa(config-if)# no shut<br />
asa(config-if)# no shutdown<br />
Failed to change interface status: cannot get channel<br />
asa(config-if)#</p>
<p>ASAP</p>
]]></content:encoded>
	</item>
</channel>
</rss>
<!-- WP Super Cache is installed but broken. The path to wp-cache-phase1.php in wp-content/advanced-cache.php must be fixed! -->
