<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: acl in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/acl/m-p/1335549#M819331</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;So you are trying to connect from 192.168.0.1 to any address on port 5017 ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is port 5017 ie. what application ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could you post the ASA config ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 19 Aug 2009 18:01:14 GMT</pubDate>
    <dc:creator>Jon Marshall</dc:creator>
    <dc:date>2009-08-19T18:01:14Z</dc:date>
    <item>
      <title>acl</title>
      <link>https://community.cisco.com/t5/network-security/acl/m-p/1335548#M819329</link>
      <description>&lt;P&gt;Dear Sir,&lt;/P&gt;&lt;P&gt;The following acl is applied to the asa inside interface.&lt;/P&gt;&lt;P&gt;access-list 100 permit tcp host 192.168.0.1 any eq 5017&lt;/P&gt;&lt;P&gt;access-list 100 deny ip any any&lt;/P&gt;&lt;P&gt;access-group 100 in interface inside.&lt;/P&gt;&lt;P&gt;Netstat in windows command prompt shows that the connection on that port is initiated through the firewall but the return traffic is being blocked,&lt;/P&gt;&lt;P&gt;I learnt that tcp traffic obey to stateful inspection means that return traffic are always allowed for tcp.&lt;/P&gt;&lt;P&gt;Why is the return traffic being blocked?What can i do ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 16:07:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/acl/m-p/1335548#M819329</guid>
      <dc:creator>kolawole1</dc:creator>
      <dc:date>2019-03-11T16:07:50Z</dc:date>
    </item>
    <item>
      <title>Re: acl</title>
      <link>https://community.cisco.com/t5/network-security/acl/m-p/1335549#M819331</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;So you are trying to connect from 192.168.0.1 to any address on port 5017 ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is port 5017 ie. what application ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could you post the ASA config ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Aug 2009 18:01:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/acl/m-p/1335549#M819331</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2009-08-19T18:01:14Z</dc:date>
    </item>
    <item>
      <title>Re: acl</title>
      <link>https://community.cisco.com/t5/network-security/acl/m-p/1335550#M819334</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The application is netstream it connects to some satellites and collects information.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Aug 2009 07:34:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/acl/m-p/1335550#M819334</guid>
      <dc:creator>kolawole1</dc:creator>
      <dc:date>2009-08-20T07:34:46Z</dc:date>
    </item>
  </channel>
</rss>

