I have two ASAs that have a site to site VPN tunnel between them. The tunnel is up and running, and the secondary ASA has the same sub interfaces setup on it as the primary (for disaster recovery)
My question is there is a service (tcp/5000) that needs to access a VLAN on the secondary ASA. I am unsure where I go about creating the ACL to permit this traffic.
Would this be considered on the outside interface IN?