<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX Firewall 525 access list problem in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508544#M528136</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ok, thanks for your help. the behavior is the following one:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;this is the access list:&lt;/P&gt;&lt;P&gt;access-list 10 permit udp host 10.2.2.29 host 208.135.186.182 eq syslog&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-group 10 in interface inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The packets are seen entering the interface inside and going out for the outside, but changes are not seen in the hits of the access list.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;R.@.M.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 31 Jan 2006 19:59:44 GMT</pubDate>
    <dc:creator>marulandar</dc:creator>
    <dc:date>2006-01-31T19:59:44Z</dc:date>
    <item>
      <title>PIX Firewall 525 access list problem</title>
      <link>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508542#M528133</link>
      <description>&lt;P&gt;Hi.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have teh following problem. After insert a access-list, in spite of seeing packets related to the list, these do not do " match ", that is to say, it is as if the list was not doing his work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Which can be the cause of this behavior?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX Model 525&lt;/P&gt;&lt;P&gt;IOS 6.3(4)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ramiro Marulanda Z.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 08:40:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508542#M528133</guid>
      <dc:creator>marulandar</dc:creator>
      <dc:date>2020-02-21T08:40:54Z</dc:date>
    </item>
    <item>
      <title>Re: PIX Firewall 525 access list problem</title>
      <link>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508543#M528135</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What's the syslog related to this behavior?&lt;/P&gt;&lt;P&gt;Also you may add the following statement to your pix config&lt;/P&gt;&lt;P&gt;access-group acl_name in interface your_intf&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Jan 2006 16:01:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508543#M528135</guid>
      <dc:creator>mpalardy</dc:creator>
      <dc:date>2006-01-30T16:01:23Z</dc:date>
    </item>
    <item>
      <title>Re: PIX Firewall 525 access list problem</title>
      <link>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508544#M528136</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ok, thanks for your help. the behavior is the following one:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;this is the access list:&lt;/P&gt;&lt;P&gt;access-list 10 permit udp host 10.2.2.29 host 208.135.186.182 eq syslog&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-group 10 in interface inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The packets are seen entering the interface inside and going out for the outside, but changes are not seen in the hits of the access list.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;R.@.M.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Jan 2006 19:59:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508544#M528136</guid>
      <dc:creator>marulandar</dc:creator>
      <dc:date>2006-01-31T19:59:44Z</dc:date>
    </item>
    <item>
      <title>Re: PIX Firewall 525 access list problem</title>
      <link>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508545#M528137</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are all the syslogs sent correctly to the remote host? In the affirmative I'd say the udp connection is never closed by the PIX. Let's say the connection never hit the timeout in the pix config. So the connection remains open and doesnot increment the hitcount for your access-list. I have a PIX that does the same behaviour.&lt;/P&gt;&lt;P&gt;Also the hitcount increment is based on the connection and not on every packet passing by the PIX.&lt;/P&gt;&lt;P&gt;You may use a debug command to see packet going thru the PIX.&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Jan 2006 23:22:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508545#M528137</guid>
      <dc:creator>mpalardy</dc:creator>
      <dc:date>2006-01-31T23:22:30Z</dc:date>
    </item>
    <item>
      <title>Re: PIX Firewall 525 access list problem</title>
      <link>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508546#M528138</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;In my preceeding answer I forgot telling you to use this command. To help you seeing if the connection is up between hosts:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This command "show local..." will resume the "sh conn..." and "sh xlate..." commands&lt;/P&gt;&lt;P&gt;sh local 10.2.2.29 detail&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You may also try the "show timeout" command to see what's the timeout configured on the pix for udp  connections.&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 01 Feb 2006 14:09:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508546#M528138</guid>
      <dc:creator>mpalardy</dc:creator>
      <dc:date>2006-02-01T14:09:18Z</dc:date>
    </item>
    <item>
      <title>Re: PIX Firewall 525 access list problem</title>
      <link>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508547#M528139</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Mike. Your help has been of great utility.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I will carry out his recommendations and I am going to observe the results.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again, and regards!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;R.@.M.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 01 Feb 2006 16:24:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-firewall-525-access-list-problem/m-p/508547#M528139</guid>
      <dc:creator>marulandar</dc:creator>
      <dc:date>2006-02-01T16:24:25Z</dc:date>
    </item>
  </channel>
</rss>

