> packet-tracer input outside tcp 10.5.1.1 3000 172.22.4.8 80 Phase: 1 Type: ACCESS-LIST Subtype: Result: ALLOW Config: Implicit Rule Additional Information: MAC Access list Phase: 2 Type: ROUTE-LOOKUP Subtype: Resolve Egress Interface Result: ALLOW Config: Additional Information: found next-hop 81.21.58.33 using egress ifc outside Phase: 3 Type: ACCESS-LIST Subtype: log Result: DROP Config: access-group NGFW_ONBOX_ACL global access-list NGFW_ONBOX_ACL advanced deny ip any any rule-id 1 access-list NGFW_ONBOX_ACL remark rule-id 1: ACCESS POLICY: NGFW_Access_Policy access-list NGFW_ONBOX_ACL remark rule-id 1: L5 RULE: DefaultActionRule Additional Information: Result: input-interface: outside input-status: up input-line-status: up output-interface: outside output-status: up output-line-status: up Action: drop Drop-reason: (acl-drop) Flow is denied by configured rule > > packet-tracer input outside tcp 10.5.1.1 3000 172.22.4.8 80 Phase: 1 Type: ROUTE-LOOKUP Subtype: Resolve Egress Interface Result: ALLOW Config: Additional Information: found next-hop 81.21.58.33 using egress ifc outside Phase: 2 Type: ACCESS-LIST Subtype: log Result: DROP Config: access-group NGFW_ONBOX_ACL global access-list NGFW_ONBOX_ACL advanced deny ip any any rule-id 1 access-list NGFW_ONBOX_ACL remark rule-id 1: ACCESS POLICY: NGFW_Access_Policy access-list NGFW_ONBOX_ACL remark rule-id 1: L5 RULE: DefaultActionRule Additional Information: Result: input-interface: outside input-status: up input-line-status: up output-interface: outside output-status: up output-line-status: up Action: drop Drop-reason: (acl-drop) Flow is denied by configured rule