<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic permit esp any any in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/permit-esp-any-any/m-p/1587881#M559165</link>
    <description>&lt;P&gt;How can I make the following more secure?:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="Courier New&amp;amp;quot: ; color: #000000; font-size: 12pt; font-family: &amp;amp;quot; "&gt;access-list from_outside permit esp any any &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="Courier New&amp;amp;quot: ; font-family: arial,helvetica,sans-serif; "&gt;We have currently have it on our firewall and I know it's not the most secure.&amp;nbsp; But I want to make sure our tunnels still work.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: &amp;amp;quot;Courier New&amp;amp;quot;;"&gt;Thank you,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: &amp;amp;quot;Courier New&amp;amp;quot;;"&gt;Thomas&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 20:12:28 GMT</pubDate>
    <dc:creator>Thomas Reiling</dc:creator>
    <dc:date>2019-03-11T20:12:28Z</dc:date>
    <item>
      <title>permit esp any any</title>
      <link>https://community.cisco.com/t5/network-security/permit-esp-any-any/m-p/1587881#M559165</link>
      <description>&lt;P&gt;How can I make the following more secure?:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="Courier New&amp;amp;quot: ; color: #000000; font-size: 12pt; font-family: &amp;amp;quot; "&gt;access-list from_outside permit esp any any &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="Courier New&amp;amp;quot: ; font-family: arial,helvetica,sans-serif; "&gt;We have currently have it on our firewall and I know it's not the most secure.&amp;nbsp; But I want to make sure our tunnels still work.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: &amp;amp;quot;Courier New&amp;amp;quot;;"&gt;Thank you,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: &amp;amp;quot;Courier New&amp;amp;quot;;"&gt;Thomas&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 20:12:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/permit-esp-any-any/m-p/1587881#M559165</guid>
      <dc:creator>Thomas Reiling</dc:creator>
      <dc:date>2019-03-11T20:12:28Z</dc:date>
    </item>
    <item>
      <title>Re: permit esp any any</title>
      <link>https://community.cisco.com/t5/network-security/permit-esp-any-any/m-p/1587882#M559171</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This line I assume you have it applied on the outside interface. If that is the case, this line should be used to allow traffic from outside to the inside. If you have static nat configured you could permit esp from know sources to the NAT'ed IPs. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you don't have any nat for inbound traffic then you don't need that acl.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 24 Mar 2011 18:37:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/permit-esp-any-any/m-p/1587882#M559171</guid>
      <dc:creator>PAUL GILBERT ARIAS</dc:creator>
      <dc:date>2011-03-24T18:37:44Z</dc:date>
    </item>
  </channel>
</rss>

