<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco ASA 9.X Packet flow in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495722#M1084744</link>
    <description>&lt;P&gt;That is high level i have provided,&amp;nbsp; if there is no NAT it go in to ACL Process. ( or am i confused here with question ?)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 821px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/136297i03BA13428C3E4169/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 31 Oct 2021 15:46:48 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2021-10-31T15:46:48Z</dc:date>
    <item>
      <title>Cisco ASA 9.X Packet flow</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495414#M1084730</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could someone please help with&amp;nbsp;Cisco ASA 9.X Packet flow. And also what is the exact difference between veriosn 8.2 and 9.X.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Moula Ali&lt;/P&gt;</description>
      <pubDate>Sat, 30 Oct 2021 14:45:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495414#M1084730</guid>
      <dc:creator>MoulaAli480</dc:creator>
      <dc:date>2021-10-30T14:45:46Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 9.X Packet flow</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495451#M1084732</link>
      <description>&lt;P&gt;ASA&amp;nbsp; packet flow as below :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 570px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/136175i21FADD325C1C0270/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ASA&amp;nbsp; 8.2 to 9.X&amp;nbsp; Many changed , you can view by release :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/roadmap/asa_new_features.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/roadmap/asa_new_features.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 30 Oct 2021 18:14:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495451#M1084732</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-10-30T18:14:32Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 9.X Packet flow</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495496#M1084735</link>
      <description>Hi Balaji,&lt;BR /&gt;&lt;BR /&gt;Thanks for the explanation.&lt;BR /&gt;&lt;BR /&gt;But I see in the latest versions packet tracer after the ingress interface&lt;BR /&gt;packet reaches it is checking nat first. Could you please confirm on this&lt;BR /&gt;one.&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;Moula Ali</description>
      <pubDate>Sun, 31 Oct 2021 02:33:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495496#M1084735</guid>
      <dc:creator>MoulaAli480</dc:creator>
      <dc:date>2021-10-31T02:33:33Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 9.X Packet flow</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495707#M1084742</link>
      <description>&lt;PRE&gt;latest versions packet tracer&lt;/PRE&gt;
&lt;P&gt;Simulator or Packet Tracer of ASA ? please clarify and show is the output if you can.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 31 Oct 2021 15:17:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495707#M1084742</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-10-31T15:17:25Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 9.X Packet flow</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495709#M1084743</link>
      <description>Hello Balaji,&lt;BR /&gt;&lt;BR /&gt;Sorry I don't have lab to show packet tracer output. My query is simple and&lt;BR /&gt;clear ASA packet flow of latest version 9.x. I could not see NAT&lt;BR /&gt;untranslate step in your explanation.&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;Moula Ali</description>
      <pubDate>Sun, 31 Oct 2021 15:25:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495709#M1084743</guid>
      <dc:creator>MoulaAli480</dc:creator>
      <dc:date>2021-10-31T15:25:38Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 9.X Packet flow</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495722#M1084744</link>
      <description>&lt;P&gt;That is high level i have provided,&amp;nbsp; if there is no NAT it go in to ACL Process. ( or am i confused here with question ?)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 821px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/136297i03BA13428C3E4169/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 31 Oct 2021 15:46:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4495722#M1084744</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-10-31T15:46:48Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 9.X Packet flow</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4836828#M1100448</link>
      <description>&lt;P&gt;5/16/2023 Update to keep this current and hopefully assist.&lt;/P&gt;&lt;P&gt;Balaji had a good question about packet tracer. This data is from Cisco Modeling Labs (CML) 2.5 with the ASA v9.18(2) (System image file is "boot:/asa9182-smp-k8.bin"). The order below shows it depends if you are going from high security-level to low or if it's low to high as might be expected. Access lists are required low to high, but the traffic send high to low is permitted without them, so no check is made below.&lt;/P&gt;&lt;P&gt;Attached is a summary after which the full details (standard not detailed) are shown for further analysis for reviewers.&amp;nbsp;These are for allowed traffic. It looks like the diagram above is good. A few more details are shown in the data, but nice work Balaji!&amp;nbsp;&lt;/P&gt;&lt;P&gt;OUTSIDE to INSIDE: packet-tracer input outside icmp 150.1.35.5 8 0 150.1.55.8&lt;/P&gt;&lt;P&gt;Phase:&lt;BR /&gt;1 ROUTE-LOOKUP&lt;BR /&gt;2 ACCESS-LIST&lt;BR /&gt;3 NAT&lt;BR /&gt;4 IP-OPTIONS&lt;BR /&gt;5 QOS&lt;BR /&gt;6 INSPECT&lt;BR /&gt;7 FLOW-CREATION&lt;BR /&gt;8 ACCESS-LIST&lt;BR /&gt;9 NAT&lt;BR /&gt;10 IP-OPTIONS&lt;BR /&gt;11 INPUT-ROUTE-LOOKUP-FROM-OUTPUT-ROUTE-LOOKUP&lt;BR /&gt;12 ADJACENCY-LOOKUP&lt;/P&gt;&lt;P&gt;Result:&lt;BR /&gt;Action: allow&lt;/P&gt;&lt;P&gt;INSIDE TO OUTSIDE: packet-tracer input inside icmp 150.1.55.8 8 0 150.1.35.5&lt;/P&gt;&lt;P&gt;Phase:&lt;BR /&gt;1 ROUTE-LOOKUP&lt;BR /&gt;2 NAT&lt;BR /&gt;3 IP-OPTIONS&lt;BR /&gt;4 QOS&lt;BR /&gt;5 INSPECT&lt;BR /&gt;6 FLOW-CREATION&lt;BR /&gt;7 NAT&lt;BR /&gt;8 IP-OPTIONS&lt;BR /&gt;9 INPUT-ROUTE-LOOKUP-FROM-OUTPUT-ROUTE-LOOKUP&lt;BR /&gt;10 ADJACENCY-LOOKUP&lt;/P&gt;&lt;P&gt;Result:&lt;BR /&gt;Action: allow&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 16 May 2023 13:58:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-9-x-packet-flow/m-p/4836828#M1100448</guid>
      <dc:creator>IEbound</dc:creator>
      <dc:date>2023-05-16T13:58:44Z</dc:date>
    </item>
  </channel>
</rss>

