<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Understanding access rules in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/understanding-access-rules/m-p/1919885#M437121</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;1. With the new interfaces you created, you would also need to assign the access rule to the interface:&lt;/P&gt;&lt;P&gt;access-group &lt;ACL-NAME&gt; in interface &lt;INTERFACE-NAME&gt;&lt;/INTERFACE-NAME&gt;&lt;/ACL-NAME&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. Each interface should really have unique rules that correspond to that particular interface, instead of having 1 same rule set to all interfaces. How does your current configuration look like?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 13 May 2012 08:00:31 GMT</pubDate>
    <dc:creator>Jennifer Halim</dc:creator>
    <dc:date>2012-05-13T08:00:31Z</dc:date>
    <item>
      <title>Understanding access rules</title>
      <link>https://community.cisco.com/t5/network-security/understanding-access-rules/m-p/1919884#M437120</link>
      <description>&lt;P style="text-align: left;"&gt;am trying to config a FWSM by ASDM 6.2f.&lt;/P&gt;&lt;P style="text-align: left;"&gt;there are formerly configured interfaces and new interfaces i created.&lt;/P&gt;&lt;P style="text-align: left;"&gt;when i add a new access rule it gets added only to all the old interfaces but not to the new ones i created.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="text-align: left;"&gt;1. what wrong with the new interfces i created?&lt;/P&gt;&lt;P style="text-align: left;"&gt;2. whats the logic of auto adding a rule to "all" interfaces , the rules are incoming rules&amp;nbsp; specific to interfaces or groups , why add the to the rule to&amp;nbsp; "all" intefaces?.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:06:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/understanding-access-rules/m-p/1919884#M437120</guid>
      <dc:creator>Jacob Berger</dc:creator>
      <dc:date>2019-03-11T23:06:08Z</dc:date>
    </item>
    <item>
      <title>Understanding access rules</title>
      <link>https://community.cisco.com/t5/network-security/understanding-access-rules/m-p/1919885#M437121</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;1. With the new interfaces you created, you would also need to assign the access rule to the interface:&lt;/P&gt;&lt;P&gt;access-group &lt;ACL-NAME&gt; in interface &lt;INTERFACE-NAME&gt;&lt;/INTERFACE-NAME&gt;&lt;/ACL-NAME&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. Each interface should really have unique rules that correspond to that particular interface, instead of having 1 same rule set to all interfaces. How does your current configuration look like?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 13 May 2012 08:00:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/understanding-access-rules/m-p/1919885#M437121</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2012-05-13T08:00:31Z</dc:date>
    </item>
    <item>
      <title>Understanding access rules</title>
      <link>https://community.cisco.com/t5/network-security/understanding-access-rules/m-p/1919886#M437122</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; hi jennifer&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. i have some 20 interfaces(vlans) when i add a new incoming&amp;nbsp; rule to a old interface ( not one i created) it gets added automaticlly to all the old interfaces but not to the new ones.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2.&amp;nbsp; my config:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i see all the interfaces with identical rules under them&lt;/P&gt;&lt;P&gt;as i stated above, no matter under which interface i create the rule , it gets duplicated under&amp;nbsp; the other interfaces ( only the old ones)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i am new to ASDM with vlans so im not sure how thing should be working&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 13 May 2012 11:24:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/understanding-access-rules/m-p/1919886#M437122</guid>
      <dc:creator>Jacob Berger</dc:creator>
      <dc:date>2012-05-13T11:24:27Z</dc:date>
    </item>
    <item>
      <title>Understanding access rules</title>
      <link>https://community.cisco.com/t5/network-security/understanding-access-rules/m-p/1919887#M437123</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;1. In that case, as stated on your point number 2 that you have the same rule applied to all the interfaces. Hence when you create a rule it gets added to all interfaces.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. Two steps to configure access rules and apply to interface:&lt;/P&gt;&lt;P&gt;Step 1: configure the access rules&lt;/P&gt;&lt;P&gt;Step 2: apply it to the interface (this only needs to be applied once, so if you create a new interface, you would need to apply the access rules to the new interface).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Each interface can have different access rule name:&lt;/P&gt;&lt;P&gt;Example:&lt;/P&gt;&lt;P&gt;access-list acl-inside permit tcp any any eq 80&lt;/P&gt;&lt;P&gt;access-list acl-inside permit tcp any any eq 443&lt;/P&gt;&lt;P&gt;access-group acl-inside in interface inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list acl-outside permit tcp any host 1.1.1.1 eq 80&lt;/P&gt;&lt;P&gt;access-group acl-outside in interface outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that answers your question.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 13 May 2012 11:36:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/understanding-access-rules/m-p/1919887#M437123</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2012-05-13T11:36:30Z</dc:date>
    </item>
  </channel>
</rss>

