<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Default action block problem in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/default-action-block-problem/m-p/4526223#M1086159</link>
    <description>&lt;P&gt;&lt;SPAN&gt;i have the firepower 1120. i configured my device for access to internet from DMZ zone and to access to my web server, but with default action allow. when i set default action BLOCK, and i create NAT: manual for accesss dmz zone to internet and automatic nat for access to my web server, nothing is working. what i must to make that my firewall works when is set default action BLOCK?&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 04 Jan 2022 08:02:55 GMT</pubDate>
    <dc:creator>gogi99</dc:creator>
    <dc:date>2022-01-04T08:02:55Z</dc:date>
    <item>
      <title>Default action block problem</title>
      <link>https://community.cisco.com/t5/network-security/default-action-block-problem/m-p/4526223#M1086159</link>
      <description>&lt;P&gt;&lt;SPAN&gt;i have the firepower 1120. i configured my device for access to internet from DMZ zone and to access to my web server, but with default action allow. when i set default action BLOCK, and i create NAT: manual for accesss dmz zone to internet and automatic nat for access to my web server, nothing is working. what i must to make that my firewall works when is set default action BLOCK?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 04 Jan 2022 08:02:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/default-action-block-problem/m-p/4526223#M1086159</guid>
      <dc:creator>gogi99</dc:creator>
      <dc:date>2022-01-04T08:02:55Z</dc:date>
    </item>
    <item>
      <title>Re: Default action block problem</title>
      <link>https://community.cisco.com/t5/network-security/default-action-block-problem/m-p/4526227#M1086160</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/911255"&gt;@gogi99&lt;/a&gt; you have to explictly permit the traffic in order to match before the default action of deny.&lt;/P&gt;
&lt;P&gt;Provide screenshots of your ACP rules when it does not work. FYI - the ACP rule uses the real IP address not the NAT address.&lt;/P&gt;</description>
      <pubDate>Tue, 04 Jan 2022 08:06:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/default-action-block-problem/m-p/4526227#M1086160</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2022-01-04T08:06:45Z</dc:date>
    </item>
    <item>
      <title>Re: Default action block problem</title>
      <link>https://community.cisco.com/t5/network-security/default-action-block-problem/m-p/4526247#M1086161</link>
      <description>&lt;P&gt;I don't have screen because of i configured my device, where my access rules have not zones. I just use networks or hosts. The specific rules are on top, the common rules are on bottom&lt;/P&gt;</description>
      <pubDate>Tue, 04 Jan 2022 08:59:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/default-action-block-problem/m-p/4526247#M1086161</guid>
      <dc:creator>gogi99</dc:creator>
      <dc:date>2022-01-04T08:59:55Z</dc:date>
    </item>
  </channel>
</rss>

