<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Sourcefire on ASA security Zone in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/sourcefire-on-asa-security-zone/m-p/2665270#M1027792</link>
    <description>&lt;P&gt;I am looking for some information on the ability to write Zone Based access Control rules using the Sourcefire on ASA module. I can create ASA security Zones which it looks like basically just associate the interfaces on the ASA with a security Zone, but I haven't been able to use these rules to block traffic. I have set up in the Global policy to redirect all traffic to the SF module, but I am a little unclear how and or if the SF module is aware of the traffic flow through interfaces on the ASA. If this awareness is not there then it seems to me that the security zone configuration is not at all useful when building Access policies for ASA SF modules. I would love some insight or documentation on how this process works but I cannot find it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 12:38:25 GMT</pubDate>
    <dc:creator>relsethagen</dc:creator>
    <dc:date>2019-03-12T12:38:25Z</dc:date>
    <item>
      <title>Sourcefire on ASA security Zone</title>
      <link>https://community.cisco.com/t5/network-security/sourcefire-on-asa-security-zone/m-p/2665270#M1027792</link>
      <description>&lt;P&gt;I am looking for some information on the ability to write Zone Based access Control rules using the Sourcefire on ASA module. I can create ASA security Zones which it looks like basically just associate the interfaces on the ASA with a security Zone, but I haven't been able to use these rules to block traffic. I have set up in the Global policy to redirect all traffic to the SF module, but I am a little unclear how and or if the SF module is aware of the traffic flow through interfaces on the ASA. If this awareness is not there then it seems to me that the security zone configuration is not at all useful when building Access policies for ASA SF modules. I would love some insight or documentation on how this process works but I cannot find it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 12:38:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sourcefire-on-asa-security-zone/m-p/2665270#M1027792</guid>
      <dc:creator>relsethagen</dc:creator>
      <dc:date>2019-03-12T12:38:25Z</dc:date>
    </item>
    <item>
      <title>Greetings,I'm running 5.3.1.2</title>
      <link>https://community.cisco.com/t5/network-security/sourcefire-on-asa-security-zone/m-p/2665271#M1027793</link>
      <description>&lt;P&gt;Greetings,&lt;/P&gt;&lt;P&gt;I'm running 5.3.1.2. &amp;nbsp;&lt;/P&gt;&lt;P&gt;I had all my rules in place, based on security zones (all zones pointing to appropriate interfaces on the ASAs) and&amp;nbsp;&lt;EM&gt;none &lt;/EM&gt;of the rules were being "hit". &amp;nbsp;I changed my rules from zones to &amp;nbsp;networks, and viola, everything is working just fine.&lt;/P&gt;&lt;P&gt;If anyone knows how to use a "Source Zone" in an "Access Control" policy, please let me know.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 11 Mar 2015 18:30:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sourcefire-on-asa-security-zone/m-p/2665271#M1027793</guid>
      <dc:creator>Arnold Montemayor</dc:creator>
      <dc:date>2015-03-11T18:30:09Z</dc:date>
    </item>
  </channel>
</rss>

