<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA implicit Deny in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710638#M536445</link>
    <description>&lt;P&gt;Hi all, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i have doubt in ASA implcit deny concept. if we add new ACE ( without line number ) in in the existing acces-list where it will be stored. will it be added after implicit deny rule or it will send the implicit deny rule one step down? kindly clarify this doubt.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 20:56:11 GMT</pubDate>
    <dc:creator>Balakumaresan Saravanan</dc:creator>
    <dc:date>2019-03-11T20:56:11Z</dc:date>
    <item>
      <title>ASA implicit Deny</title>
      <link>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710638#M536445</link>
      <description>&lt;P&gt;Hi all, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i have doubt in ASA implcit deny concept. if we add new ACE ( without line number ) in in the existing acces-list where it will be stored. will it be added after implicit deny rule or it will send the implicit deny rule one step down? kindly clarify this doubt.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 20:56:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710638#M536445</guid>
      <dc:creator>Balakumaresan Saravanan</dc:creator>
      <dc:date>2019-03-11T20:56:11Z</dc:date>
    </item>
    <item>
      <title>ASA implicit Deny</title>
      <link>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710639#M536447</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Bala,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Whenever you add a new ACL withoout specifyong the line number, it would always be added at the bottom onf the access-list entries, the implicit deny ACL would be pushed down at the last, so for eg you have 25 lines in the ACL, and you add a new ACE, that ACE would be added on line 26 and implicit deny would be after the line 26. To verify, use the command:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show access-list&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;this would give you all the access-list line numbers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Jul 2011 19:02:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710639#M536447</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-07T19:02:23Z</dc:date>
    </item>
    <item>
      <title>ASA implicit Deny</title>
      <link>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710640#M536449</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks varun, this is only for ASA or it will be applicable for cisco routers also???&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Jul 2011 19:15:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710640#M536449</guid>
      <dc:creator>Balakumaresan Saravanan</dc:creator>
      <dc:date>2011-07-07T19:15:21Z</dc:date>
    </item>
    <item>
      <title>ASA implicit Deny</title>
      <link>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710641#M536451</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It is the same concept on cisco router as well, the acl would be added in the last and would have an implicit deny after that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope I was able tos olve your query.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Jul 2011 19:22:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710641#M536451</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-07T19:22:15Z</dc:date>
    </item>
    <item>
      <title>ASA implicit Deny</title>
      <link>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710642#M536453</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks varun thanks a lot... &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Jul 2011 19:31:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710642#M536453</guid>
      <dc:creator>Balakumaresan Saravanan</dc:creator>
      <dc:date>2011-07-07T19:31:31Z</dc:date>
    </item>
    <item>
      <title>ASA implicit Deny</title>
      <link>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710643#M536454</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No problem &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt; , plesae mark this thread as answered, if your queries are resolved.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Jul 2011 19:34:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-implicit-deny/m-p/1710643#M536454</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-07T19:34:22Z</dc:date>
    </item>
  </channel>
</rss>

