<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Adding ACL in Multicontext Firewall in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/adding-acl-in-multicontext-firewall/m-p/2281727#M344829</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Hi Jouni,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for prompt reply.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best Regards&lt;/P&gt;&lt;P&gt;Mahesh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 13 Aug 2013 01:42:16 GMT</pubDate>
    <dc:creator>mahesh18</dc:creator>
    <dc:date>2013-08-13T01:42:16Z</dc:date>
    <item>
      <title>Adding ACL in Multicontext Firewall</title>
      <link>https://community.cisco.com/t5/network-security/adding-acl-in-multicontext-firewall/m-p/2281725#M344827</link>
      <description>&lt;P&gt;Hi Everyone,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Need to confirm below is the right way to make changes in firewall when they are in multi context mode--Active ,Active &lt;/P&gt;&lt;P&gt;Need to add ACL in 2 firewalls.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Say ASA1 has two contexts admin and a&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When i logon to say IP 192.168.1.1&amp;nbsp; i go to ASA1/admin&amp;nbsp; which is primary ASA&amp;nbsp; and active for context admin.&lt;/P&gt;&lt;P&gt;Context a is standby here.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here i added the ACL&amp;nbsp; rule under the admin context&amp;nbsp; of ASA1.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now i log onto second say hostname ASA1&lt;/P&gt;&lt;P&gt;Here say i log onto IP 192..168.1.2 go to ASA/admin which is seconday ASA&amp;nbsp; and admin context is standby here&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Context&amp;nbsp; a is active here.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;From admin context i will go to context a and get hostname ASA1/aand will add the ACL rule here.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;after the above change is done new rule should show up in both the contexts of&amp;nbsp; primary and secondary fws and right?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;&lt;P&gt;Mahesh&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Message was edited by: mahesh parmar&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 02:24:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/adding-acl-in-multicontext-firewall/m-p/2281725#M344827</guid>
      <dc:creator>mahesh18</dc:creator>
      <dc:date>2019-03-12T02:24:49Z</dc:date>
    </item>
    <item>
      <title>Adding ACL in Multicontext Firewall</title>
      <link>https://community.cisco.com/t5/network-security/adding-acl-in-multicontext-firewall/m-p/2281726#M344828</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Mahesh,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So if you have Active/Active ASA pair and several Security Contexts in them then there is really nothing that different from configuring those Security Context compared to configuring an Active/Standby pair.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You basically find/determine the device that is Active for the Security Context you want to configure, log into that device and go into the Security Context and make the required configurations and they will be automatically replicated to the other physical units Standby Security Context.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You should get a warning before configuring anything if you happen to be logged on a unit that is in Standby State&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To my understanding as soon as you enter&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;configure terminal (or conf t)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The ASA will notify you that you are configuring the Standby unit and the commands you will enter wont be replicated to the other unit that is Active for this Context at the moment.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Basically the easiest command to determine the roles of each ASA device for specific Security Context is to use the following command&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;show failover&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When you use it in the System Context space/mode I think you should get listing of that devices State for ALL of the Security Contexts configured on that device.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 12 Aug 2013 23:41:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/adding-acl-in-multicontext-firewall/m-p/2281726#M344828</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2013-08-12T23:41:35Z</dc:date>
    </item>
    <item>
      <title>Re: Adding ACL in Multicontext Firewall</title>
      <link>https://community.cisco.com/t5/network-security/adding-acl-in-multicontext-firewall/m-p/2281727#M344829</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Hi Jouni,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for prompt reply.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best Regards&lt;/P&gt;&lt;P&gt;Mahesh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Aug 2013 01:42:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/adding-acl-in-multicontext-firewall/m-p/2281727#M344829</guid>
      <dc:creator>mahesh18</dc:creator>
      <dc:date>2013-08-13T01:42:16Z</dc:date>
    </item>
  </channel>
</rss>

