Solved

ACL question

Posted on 2009-07-14
2
236 Views
Last Modified: 2012-05-07
If I explicitly let traffic leave my pix (from the inside to outside), is that traffic allowed back in (via the state table), even if I have an ACL that explicitly denies it on the outside int?
0
Comment
Question by:WERAracer
2 Comments
 
LVL 28

Accepted Solution

by:
Jan Springer earned 500 total points
ID: 24850884
cisco access-lists are implicit deny when not specified.  so, yes, it shouldn't be a problem if it's a 'deny any any'.
0
 
LVL 10

Expert Comment

by:stsonline
ID: 24852874
The outside deny statement will be bypassed for traffic initiated on the inside since they consider an established connection as allowed.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In the hope of saving someone else's sanity... About a year ago we bought a Cisco 1921 router with two ADSL/VDSL EHWIC cards to load balance local network traffic over the two broadband lines we have, but we couldn't get the routing to work consi…
In the world of WAN, QoS is a pretty important topic for most, if not all, networks. Some WAN technologies have QoS mechanisms built in, but others, such as some L2 WAN's, don't have QoS control in the provider cloud.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …

895 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

14 Experts available now in Live!

Get 1:1 Help Now