<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FWSM Explicit deny strange behavior in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595227#M594534</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;amp;bugId=CSCtc97643"&gt;http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;amp;bugId=CSCtc97643&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Fix is in 4.0.9 or above.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or disable acl optimization.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/cgi-bin/tablebuild.pl/cat6000-fwsm"&gt;http://www.cisco.com/cgi-bin/tablebuild.pl/cat6000-fwsm&lt;/A&gt;&lt;BR /&gt; &lt;BR /&gt; Click on the All new releases will be available "here"&lt;BR /&gt; &lt;BR /&gt; The latest in the 4.0 train is 4.0.13&lt;BR /&gt; ASDM is asdm-62(1)f.bin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 11 Jan 2011 21:02:04 GMT</pubDate>
    <dc:creator>Kureli Sankar</dc:creator>
    <dc:date>2011-01-11T21:02:04Z</dc:date>
    <item>
      <title>FWSM Explicit deny strange behavior</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595221#M594494</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am having problems with a FWSM with multiple contexts implementation.&lt;/P&gt;&lt;P&gt;One of the contexts has a inside interface that must have a EXPLICIT deny ip any any.&lt;/P&gt;&lt;P&gt;The problem is:&lt;/P&gt;&lt;P&gt;When I put the ACE with the explicit deny at the end of the ACL all the traffic EXPLICIT permitted before it stops working.&lt;/P&gt;&lt;P&gt;If I remove the explicit deny, letting the IMPLICIT deny work, everything runs fine.&lt;/P&gt;&lt;P&gt;I am running the 4.0(4) code.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any ideas?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance,&lt;/P&gt;&lt;P&gt;Pedro Mazzoni&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:33:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595221#M594494</guid>
      <dc:creator>phmazzoni</dc:creator>
      <dc:date>2019-03-11T19:33:49Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Explicit deny strange behavior</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595222#M594502</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Pedro, &lt;/P&gt;&lt;P&gt;Are you using ACL optimization?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Jan 2011 18:20:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595222#M594502</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2011-01-11T18:20:04Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Explicit deny strange behavior</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595223#M594511</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No PK, I am not using ACL optimization.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;BR /&gt;Pedro &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Jan 2011 18:34:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595223#M594511</guid>
      <dc:creator>phmazzoni</dc:creator>
      <dc:date>2011-01-11T18:34:01Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Explicit deny strange behavior</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595224#M594517</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry for the wrong answer PK, but I am using it.&lt;BR /&gt;I didn't know that this is enable by default. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Jan 2011 18:41:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595224#M594517</guid>
      <dc:creator>phmazzoni</dc:creator>
      <dc:date>2011-01-11T18:41:41Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Explicit deny strange behavior</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595225#M594519</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No worries.&lt;/P&gt;&lt;P&gt;Let us know if this is answered.&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Jan 2011 19:16:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595225#M594519</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2011-01-11T19:16:21Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Explicit deny strange behavior</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595226#M594527</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;PK, do you think that this might be the problem?&lt;/P&gt;&lt;P&gt;If yes, how can ACL optimization cause it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Jan 2011 19:19:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595226#M594527</guid>
      <dc:creator>phmazzoni</dc:creator>
      <dc:date>2011-01-11T19:19:40Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Explicit deny strange behavior</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595227#M594534</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;amp;bugId=CSCtc97643"&gt;http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;amp;bugId=CSCtc97643&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Fix is in 4.0.9 or above.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or disable acl optimization.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/cgi-bin/tablebuild.pl/cat6000-fwsm"&gt;http://www.cisco.com/cgi-bin/tablebuild.pl/cat6000-fwsm&lt;/A&gt;&lt;BR /&gt; &lt;BR /&gt; Click on the All new releases will be available "here"&lt;BR /&gt; &lt;BR /&gt; The latest in the 4.0 train is 4.0.13&lt;BR /&gt; ASDM is asdm-62(1)f.bin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Jan 2011 21:02:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-explicit-deny-strange-behavior/m-p/1595227#M594534</guid>
      <dc:creator>Kureli Sankar</dc:creator>
      <dc:date>2011-01-11T21:02:04Z</dc:date>
    </item>
  </channel>
</rss>

