<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Firewall issue traffic in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/firewall-issue-traffic/m-p/2081129#M395878</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are not seeing the traffic destined to Z.Z.Z.Z on the inside interface and if you confirmed the same using packet captures, then check the routing on internal devices to confirm if the packets destined to Z.Z.Z.Z are routed to the ASA or not.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 08 Nov 2012 03:43:51 GMT</pubDate>
    <dc:creator>V S Narayana Chivukula</dc:creator>
    <dc:date>2012-11-08T03:43:51Z</dc:date>
    <item>
      <title>Firewall issue traffic</title>
      <link>https://community.cisco.com/t5/network-security/firewall-issue-traffic/m-p/2081128#M395874</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have an issue with a firewall, there are servers and load balancer behind my firewall that need to reach a host in the internet&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;these are the rules:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;acl permit tcp X.X.X.X Y.Y.Y:Y 8406&amp;nbsp; (this works ) but using the IP not the hostname (in this case i think there is an issue with the DNS)&lt;/P&gt;&lt;P&gt;its applied in the inside interface&amp;nbsp; im able to see the hits in the ACL&amp;nbsp; in order to reach the internet there is a PAT).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;but this&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;acl permit tcp X.X.X.X Z.Z.Z.Z 443 (this doesnt work using the IP or the hostname) , im not able to see the traffic in the inside interface from this host X.X.X.X&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ITs similar to the first scenario it only change the IP and the port, (in order to reach&amp;nbsp; the internet there is a PAT)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;what could be the problem,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;capture also didnt show me nothing.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 00:20:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firewall-issue-traffic/m-p/2081128#M395874</guid>
      <dc:creator>lecarbajalp</dc:creator>
      <dc:date>2019-03-12T00:20:16Z</dc:date>
    </item>
    <item>
      <title>Firewall issue traffic</title>
      <link>https://community.cisco.com/t5/network-security/firewall-issue-traffic/m-p/2081129#M395878</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are not seeing the traffic destined to Z.Z.Z.Z on the inside interface and if you confirmed the same using packet captures, then check the routing on internal devices to confirm if the packets destined to Z.Z.Z.Z are routed to the ASA or not.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Nov 2012 03:43:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firewall-issue-traffic/m-p/2081129#M395878</guid>
      <dc:creator>V S Narayana Chivukula</dc:creator>
      <dc:date>2012-11-08T03:43:51Z</dc:date>
    </item>
  </channel>
</rss>

