<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hello Guys, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-security-level/m-p/751643#M1008891</link>
    <description>&lt;P&gt;Hello Guys,&lt;/P&gt;
&lt;P&gt;Thanks for your information, it was really helpful for me in such a case.&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Milad&lt;/P&gt;</description>
    <pubDate>Mon, 19 Dec 2016 06:57:27 GMT</pubDate>
    <dc:creator>afsharmilad89</dc:creator>
    <dc:date>2016-12-19T06:57:27Z</dc:date>
    <item>
      <title>Pix security level</title>
      <link>https://community.cisco.com/t5/network-security/pix-security-level/m-p/751639#M1008852</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We use security level 0 outside and 100 in inside. but when we use security level other interface (dmz) then 50 or 30 or 20. so my question is what is security difference 50 ,30, 20 ?.&lt;/P&gt;&lt;P&gt;when i use 50 or 30 or 20 ??&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;Biplob&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 09:53:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-security-level/m-p/751639#M1008852</guid>
      <dc:creator>iqbalkhan</dc:creator>
      <dc:date>2019-03-11T09:53:19Z</dc:date>
    </item>
    <item>
      <title>Re: Pix security level</title>
      <link>https://community.cisco.com/t5/network-security/pix-security-level/m-p/751640#M1008868</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;By default the pix allows traffic to flow from a higher to a lower interface. If you want traffic to flow from a lower to higher you need to allow that traffic with an access-list. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So the difference in security numbers are eg. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You create a dmz (DMZ1) with a security number of 50&lt;/P&gt;&lt;P&gt;You create a dmz (DMZ2) with a security number of 40. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Traffic from DMZ1 is allowed to go through the outside interface and through DMZ2 without an access-list. &lt;/P&gt;&lt;P&gt;To go from DMZ1 to the inside would require an access-list. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Traffic from DMZ2 is allowed to go through the outside interface without an access-list. &lt;/P&gt;&lt;P&gt;To go from DMZ2 to DMZ1 or to the inside requires an access-list. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So you choose the numbers for your DMZ's based on how secure that DMZ is in relation to the other DMZ's. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Mar 2007 07:24:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-security-level/m-p/751640#M1008868</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2007-03-29T07:24:25Z</dc:date>
    </item>
    <item>
      <title>Re: Pix security level</title>
      <link>https://community.cisco.com/t5/network-security/pix-security-level/m-p/751641#M1008873</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;your explation clear but not full clear.&lt;/P&gt;&lt;P&gt;you give example DMZ1 and DMZ2.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;example : I have 1 Pix.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;first time I configure:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if I have out o inside 100 and DMZ50&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2nd Time I configure:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and again I aasign out 0 inside 100 and Dmz 40&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so difference 50 and 40 what i get advantage or disadvantage.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;Biplob&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Mar 2007 07:57:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-security-level/m-p/751641#M1008873</guid>
      <dc:creator>iqbalkhan</dc:creator>
      <dc:date>2007-03-29T07:57:50Z</dc:date>
    </item>
    <item>
      <title>Re: Pix security level</title>
      <link>https://community.cisco.com/t5/network-security/pix-security-level/m-p/751642#M1008884</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you only have one DMZ it really makes no difference. 40 or 50 are both greater than 0 and less than 100 (your outside and inside interfaces) so whichever number you use it will have the same effect. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Mar 2007 08:08:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-security-level/m-p/751642#M1008884</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2007-03-29T08:08:32Z</dc:date>
    </item>
    <item>
      <title>Hello Guys,</title>
      <link>https://community.cisco.com/t5/network-security/pix-security-level/m-p/751643#M1008891</link>
      <description>&lt;P&gt;Hello Guys,&lt;/P&gt;
&lt;P&gt;Thanks for your information, it was really helpful for me in such a case.&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Milad&lt;/P&gt;</description>
      <pubDate>Mon, 19 Dec 2016 06:57:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-security-level/m-p/751643#M1008891</guid>
      <dc:creator>afsharmilad89</dc:creator>
      <dc:date>2016-12-19T06:57:27Z</dc:date>
    </item>
  </channel>
</rss>

