<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Troubleshooting a firewall rule in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/troubleshooting-a-firewall-rule/m-p/1600976#M559902</link>
    <description>&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;I have an FWSM 4.0(7).&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;I'm creating firewall policies within Cisco Security Manager.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;I created a simple policy that from a couple of hosts&amp;nbsp; (10.127.154.8 &amp;amp; 9) to communicate to some other hosts that live on a different vlan(10.127.76.31 &amp;amp;32) and made a reciprocal policy for the other direction. The point of these policies is to allow port tcp/50636 in both directions.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;I put this rule at the&amp;nbsp; top of the ruleset to make sure there are no other rules above it that would negate the rule above.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;Yes, I also saved it and "Submitted and deployed" this to the appropriate FWSM&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;However, In the syslog, I see that port tcp/50636 is still being denied.&lt;/SPAN&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt; See attached screenshot&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;I have also confirmed that this policy is in the config of the FWSM itself.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;I have confimred that there is nothing on the host blocking (antivirus, windows firewall) this port&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt; I have seen this type of scenario a couple times before in the past, where I create a policy, it doesn't work right away - then it mysteriously works one day.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;I'm wondering if there is abug in this software version for this type of activity? Any comments on what I could try to get the policy working?&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;Thanks!&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 20:07:29 GMT</pubDate>
    <dc:creator>stevenmedeiros</dc:creator>
    <dc:date>2019-03-11T20:07:29Z</dc:date>
    <item>
      <title>Troubleshooting a firewall rule</title>
      <link>https://community.cisco.com/t5/network-security/troubleshooting-a-firewall-rule/m-p/1600976#M559902</link>
      <description>&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;I have an FWSM 4.0(7).&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;I'm creating firewall policies within Cisco Security Manager.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;I created a simple policy that from a couple of hosts&amp;nbsp; (10.127.154.8 &amp;amp; 9) to communicate to some other hosts that live on a different vlan(10.127.76.31 &amp;amp;32) and made a reciprocal policy for the other direction. The point of these policies is to allow port tcp/50636 in both directions.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;I put this rule at the&amp;nbsp; top of the ruleset to make sure there are no other rules above it that would negate the rule above.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;Yes, I also saved it and "Submitted and deployed" this to the appropriate FWSM&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;However, In the syslog, I see that port tcp/50636 is still being denied.&lt;/SPAN&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt; See attached screenshot&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;I have also confirmed that this policy is in the config of the FWSM itself.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;I have confimred that there is nothing on the host blocking (antivirus, windows firewall) this port&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt; I have seen this type of scenario a couple times before in the past, where I create a policy, it doesn't work right away - then it mysteriously works one day.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;I'm wondering if there is abug in this software version for this type of activity? Any comments on what I could try to get the policy working?&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;Thanks!&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 20:07:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/troubleshooting-a-firewall-rule/m-p/1600976#M559902</guid>
      <dc:creator>stevenmedeiros</dc:creator>
      <dc:date>2019-03-11T20:07:29Z</dc:date>
    </item>
    <item>
      <title>Re: Troubleshooting a firewall rule</title>
      <link>https://community.cisco.com/t5/network-security/troubleshooting-a-firewall-rule/m-p/1600977#M559904</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You might want to check if you have hit the hard limit on the ACL configured on the FWSM.&lt;/P&gt;&lt;P&gt;Is this multiple context or single context mode?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 16 Mar 2011 02:20:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/troubleshooting-a-firewall-rule/m-p/1600977#M559904</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-03-16T02:20:55Z</dc:date>
    </item>
  </channel>
</rss>

