Solved

ACL question

Posted on 2009-07-14
2
235 Views
Last Modified: 2012-05-07
If I explicitly let traffic leave my pix (from the inside to outside), is that traffic allowed back in (via the state table), even if I have an ACL that explicitly denies it on the outside int?
0
Comment
Question by:WERAracer
2 Comments
 
LVL 28

Accepted Solution

by:
Jan Springer earned 500 total points
Comment Utility
cisco access-lists are implicit deny when not specified.  so, yes, it shouldn't be a problem if it's a 'deny any any'.
0
 
LVL 10

Expert Comment

by:stsonline
Comment Utility
The outside deny statement will be bypassed for traffic initiated on the inside since they consider an established connection as allowed.
0

Featured Post

Enabling OSINT in Activity Based Intelligence

Activity based intelligence (ABI) requires access to all available sources of data. Recorded Future allows analysts to observe structured data on the open, deep, and dark web.

Join & Write a Comment

Hello , This is a short article on how would you go about enabling traceoptions on a Juniper router . Traceoptions are similar to Cisco debug commands but these traceoptions are implemented in Juniper networks router . The following demonstr…
Shadow IT is coming out of the shadows as more businesses are choosing cloud-based applications. It is now a multi-cloud world for most organizations. Simultaneously, most businesses have yet to consolidate with one cloud provider or define an offic…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

16 Experts available now in Live!

Get 1:1 Help Now