<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic I don't believe you can in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/conditional-policy-on-asa-is-it-possible/m-p/2510235#M235063</link>
    <description>&lt;P&gt;I don't believe you can directly modify an&amp;nbsp;access-list in response to an ip sla operation. You may be able to use Embedded Event Manager (EEM) to accomplish this however.&lt;/P&gt;&lt;P&gt;Here's a &lt;A href="http://www.cisco.com/c/en/us/td/docs/security/asa/asa93/configuration/general/asa-general-cli/monitor-eem.html#pgfId-1924076"&gt;link to the EEM section of the ASA configuration guide&lt;/A&gt; (requires ASA 9.2(1) or later).&lt;/P&gt;</description>
    <pubDate>Tue, 09 Sep 2014 23:29:50 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2014-09-09T23:29:50Z</dc:date>
    <item>
      <title>Conditional policy on ASA - is it possible</title>
      <link>https://community.cisco.com/t5/network-security/conditional-policy-on-asa-is-it-possible/m-p/2510232#M235050</link>
      <description>&lt;P&gt;Is it possible to configure a conditional policy on ASA, for example - I have 3 interfaces Inside, Proxy and Outside. All http/https traffic from the inside users ig going to Proxy (and passed to Outside thereafter). The rule explicitly blocks direct http/https traffic from Inside to Outside. Can I create a rule that enables (or disable deny statement) for http/https traffic in case a Proxy device is not available (let's say IP SLA probe detects it is down)?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:42:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/conditional-policy-on-asa-is-it-possible/m-p/2510232#M235050</guid>
      <dc:creator>osimonov1</dc:creator>
      <dc:date>2019-03-12T04:42:46Z</dc:date>
    </item>
    <item>
      <title>How are you directing traffic</title>
      <link>https://community.cisco.com/t5/network-security/conditional-policy-on-asa-is-it-possible/m-p/2510233#M235055</link>
      <description>&lt;P&gt;How are you directing traffic to the proxy? if it's via routing your can make the route track an IP SLA operation.&lt;/P&gt;</description>
      <pubDate>Mon, 08 Sep 2014 02:36:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/conditional-policy-on-asa-is-it-possible/m-p/2510233#M235055</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-09-08T02:36:39Z</dc:date>
    </item>
    <item>
      <title>The clients are configured</title>
      <link>https://community.cisco.com/t5/network-security/conditional-policy-on-asa-is-it-possible/m-p/2510234#M235060</link>
      <description>&lt;P&gt;The clients are configured with 'auto detect proxy settings', i.e. internet exporer users. The users cannot go directly because of ACL. I want this ACL disabled once proxy is not reachable.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2014 20:53:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/conditional-policy-on-asa-is-it-possible/m-p/2510234#M235060</guid>
      <dc:creator>osimonov1</dc:creator>
      <dc:date>2014-09-09T20:53:40Z</dc:date>
    </item>
    <item>
      <title>I don't believe you can</title>
      <link>https://community.cisco.com/t5/network-security/conditional-policy-on-asa-is-it-possible/m-p/2510235#M235063</link>
      <description>&lt;P&gt;I don't believe you can directly modify an&amp;nbsp;access-list in response to an ip sla operation. You may be able to use Embedded Event Manager (EEM) to accomplish this however.&lt;/P&gt;&lt;P&gt;Here's a &lt;A href="http://www.cisco.com/c/en/us/td/docs/security/asa/asa93/configuration/general/asa-general-cli/monitor-eem.html#pgfId-1924076"&gt;link to the EEM section of the ASA configuration guide&lt;/A&gt; (requires ASA 9.2(1) or later).&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2014 23:29:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/conditional-policy-on-asa-is-it-possible/m-p/2510235#M235063</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-09-09T23:29:50Z</dc:date>
    </item>
  </channel>
</rss>

