<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Required full internet access in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533986#M600844</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;the way it is setup i cannot see how firewall is blocking any request from the internal users, everything seems to be open for inside users&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;are you concerned about any particular traffic, is anything affected right now&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 18 Oct 2010 09:05:17 GMT</pubDate>
    <dc:creator>Jitendriya Athavale</dc:creator>
    <dc:date>2010-10-18T09:05:17Z</dc:date>
    <item>
      <title>Required full internet access</title>
      <link>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533985#M600839</link>
      <description>&lt;P&gt;Dear All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please share with me which command need to configure in Cisco ASA 5510 for full internet access.Actually customer has cisco ASA 5510 with CSC-SSM module but he want to give full internet access of Mgmt level users.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For your reference please find the running configuration file.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Pushpendra&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 18:55:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533985#M600839</guid>
      <dc:creator>Pushpendra Tiwari</dc:creator>
      <dc:date>2019-03-11T18:55:43Z</dc:date>
    </item>
    <item>
      <title>Re: Required full internet access</title>
      <link>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533986#M600844</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;the way it is setup i cannot see how firewall is blocking any request from the internal users, everything seems to be open for inside users&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;are you concerned about any particular traffic, is anything affected right now&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Oct 2010 09:05:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533986#M600844</guid>
      <dc:creator>Jitendriya Athavale</dc:creator>
      <dc:date>2010-10-18T09:05:17Z</dc:date>
    </item>
    <item>
      <title>Re: Required full internet access</title>
      <link>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533987#M600850</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Actually all of traffic goes outside through CSS-SSM module.Which is filtering website which site is required to open for user which is not,But Some mgmt user want to full internet access. so please suggest me procedure of open all site perticular IP.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Oct 2010 09:21:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533987#M600850</guid>
      <dc:creator>Pushpendra Tiwari</dc:creator>
      <dc:date>2010-10-18T09:21:20Z</dc:date>
    </item>
    <item>
      <title>Re: Required full internet access</title>
      <link>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533988#M600852</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;so what exactly is the requirement here&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;do you want to stop processing traffic through the module or do you want to allow everything for traffic through the module&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if you want to allow everything then do not send the traffic throiugh the module&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;use the following command this will stop sending traffic through the CSC SSM module&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; no class global-class&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Oct 2010 10:26:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533988#M600852</guid>
      <dc:creator>Jitendriya Athavale</dc:creator>
      <dc:date>2010-10-18T10:26:26Z</dc:date>
    </item>
    <item>
      <title>Re: Required full internet access</title>
      <link>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533989#M600860</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sir i want to particular some IP who will access full internet means everything which is he want to open site and rest of users will be go through CSC-SSM.have any option in ASA that mgmt user will not go through CSC-SSM but rest of user will be go the CSC-SSM.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Oct 2010 11:22:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533989#M600860</guid>
      <dc:creator>Pushpendra Tiwari</dc:creator>
      <dc:date>2010-10-18T11:22:57Z</dc:date>
    </item>
    <item>
      <title>Re: Required full internet access</title>
      <link>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533990#M600866</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;then make 2 networks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you can give one network as managment network and the other for rest of the users&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;eg: 10.1.0.0 /24 management&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.1.1.0 / 24 rest of the users&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and pass only 10.1.1.0 network through the csc ssm&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you are using this acl to identify traffic for csc ssm&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list global_mpc extended permit ip any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;removce ip any any and add 10.1.1.0 255.255.255.0 any&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Oct 2010 13:07:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/required-full-internet-access/m-p/1533990#M600866</guid>
      <dc:creator>Jitendriya Athavale</dc:creator>
      <dc:date>2010-10-18T13:07:47Z</dc:date>
    </item>
  </channel>
</rss>

