Solved

ASA 5510 Replacing Implicit Rule on Inside Interface

Posted on 2013-06-14
2
821 Views
Last Modified: 2013-06-18
Currently we have the default implicit rule on the inside interface: any -> any less secure.  I would like to start locking down the inside interface and want to do it VLAN by VLAN on our network.

If replacing the "any less secure" with an "any -> any IP" the same thing?  I was thinking I put that in first to keep the same flow, and then start slowly adding in the more restrictive rules above it.
0
Comment
Question by:AllDaySentry
2 Comments
 
LVL 25

Accepted Solution

by:
Cyclops3590 earned 250 total points
ID: 39248529
yes, just create an acl and apply it to interface.

you can start with the following that is the rough equivalent

access-list inside-in permit ip any any
access-group inside-in in interface inside
0
 

Author Comment

by:AllDaySentry
ID: 39249309
Thanks.

I did it through the ASDM which used:

access-list inside_access_in line 1 extended permit ip any any
access-group inside_access_in in interface inside
0

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

How to configure Site to Site VPN on a Cisco ASA.     (version: 1.1 - updated August 6, 2009) Index          [Preface]   1.    [Introduction]   2.    [The situation]   3.    [Getting started]   4.    [Interesting traffic]   5.    [NAT0]   6.…
This article will cover setting up redundant ISPs for outbound connectivity on an ASA 5510 (although the same should work on the 5520s and up as well).  It’s important to note that this covers outbound connectivity only.  The ASA does not have built…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…

808 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question