<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic You only need the first rule. in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/basic-rule-question-on-asa/m-p/2930404#M156796</link>
    <description>&lt;P&gt;You only need the first rule. &amp;nbsp;The return traffic will be allowed automatically.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;You will need the config "same-security-traffic permit&amp;nbsp;inter-interface".&lt;/P&gt;</description>
    <pubDate>Tue, 02 Aug 2016 20:40:03 GMT</pubDate>
    <dc:creator>Philip D'Ath</dc:creator>
    <dc:date>2016-08-02T20:40:03Z</dc:date>
    <item>
      <title>Basic rule question on ASA</title>
      <link>https://community.cisco.com/t5/network-security/basic-rule-question-on-asa/m-p/2930403#M156787</link>
      <description>&lt;P&gt;Very basic question on firewall rules on the ASA.&lt;/P&gt;
&lt;P&gt;I have 2 interfaces. Lets call them LAN 1 &amp;amp; LAN 2. Both have the same security level.&lt;/P&gt;
&lt;P&gt;HOST A on LAN 1 should communicate with HOST B on LAN 2 on http only&lt;/P&gt;
&lt;P&gt;So the rule for LAN 1 interface is:&lt;/P&gt;
&lt;P&gt;Source: HOST A&lt;BR /&gt;Destination: HOST B (LAN 2)&lt;BR /&gt;Port: 80/tcp&lt;/P&gt;
&lt;P&gt;Do I then need to put a rule in LAN 2 interface like so:&lt;/P&gt;
&lt;P&gt;Source: HOST A (LAN 1)&lt;BR /&gt;Destination: HOST B&lt;BR /&gt;Port: 80/tcp&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 08:05:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/basic-rule-question-on-asa/m-p/2930403#M156787</guid>
      <dc:creator>louis0001</dc:creator>
      <dc:date>2019-03-12T08:05:04Z</dc:date>
    </item>
    <item>
      <title>You only need the first rule.</title>
      <link>https://community.cisco.com/t5/network-security/basic-rule-question-on-asa/m-p/2930404#M156796</link>
      <description>&lt;P&gt;You only need the first rule. &amp;nbsp;The return traffic will be allowed automatically.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;You will need the config "same-security-traffic permit&amp;nbsp;inter-interface".&lt;/P&gt;</description>
      <pubDate>Tue, 02 Aug 2016 20:40:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/basic-rule-question-on-asa/m-p/2930404#M156796</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2016-08-02T20:40:03Z</dc:date>
    </item>
    <item>
      <title>Lets assume the LAN 2</title>
      <link>https://community.cisco.com/t5/network-security/basic-rule-question-on-asa/m-p/2930405#M156811</link>
      <description>&lt;P&gt;Lets assume the LAN 2 interface (sec level 100) has a higher security level then LAN 1 (sec level 90)&lt;/P&gt;
&lt;P&gt;I know a higher level can access a lower security level but if I want the traffic to be restricted so HOST B can only respond to HOST A, would I need the 2nd rule?&lt;/P&gt;</description>
      <pubDate>Tue, 02 Aug 2016 20:57:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/basic-rule-question-on-asa/m-p/2930405#M156811</guid>
      <dc:creator>louis0001</dc:creator>
      <dc:date>2016-08-02T20:57:58Z</dc:date>
    </item>
  </channel>
</rss>

