<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Incoming Access List blocking Outgoing Internet Access on 87 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108526#M894045</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is this interface BVI1? I didn't work with 877W series yet, soon I'll be buying one but probably 881W. I guess it's not for wireless access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Why don't you create a VLAN interface, add certain FastEthernet to it, add inspect rule in the same direction as you apply ACL to it. Don't forget you may need to adjust mss on the inside interface. Or even work with VLAN1 and apply rules to this interface just to check whether your config works.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know how it works.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Remi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 19 Nov 2008 15:36:26 GMT</pubDate>
    <dc:creator>remi-reszka</dc:creator>
    <dc:date>2008-11-19T15:36:26Z</dc:date>
    <item>
      <title>Incoming Access List blocking Outgoing Internet Access on 877W</title>
      <link>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108519#M894036</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have set up my 877w with the following config, I wanted to block incoming access to the ATM0.1 interface so created the "OUTSIDEIN" access list.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I also created the INSPECTOUT list for outgoing packet inspection (which I believed would bypass the incoming access list restriction)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When I apply the OUTSIDEIN access list to my ATM 0.1 interface internet access stops for my clients.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any idea why this could be? or any debugs I could use to find out why?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many Thanks, Chris&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;version 12.4&lt;/P&gt;&lt;P&gt;no service pad&lt;/P&gt;&lt;P&gt;service timestamps debug datetime msec&lt;/P&gt;&lt;P&gt;service timestamps log datetime msec&lt;/P&gt;&lt;P&gt;no service password-encryption&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;hostname router&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;boot-start-marker&lt;/P&gt;&lt;P&gt;boot-end-marker&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;logging message-counter syslog&lt;/P&gt;&lt;P&gt;no logging buffered&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;no aaa new-model&lt;/P&gt;&lt;P&gt;clock timezone gmt 0&lt;/P&gt;&lt;P&gt;clock summer-time BST recurring last Sun Mar 2:00 last Sun Oct 2:00&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 syslog&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 ssid wirelessnet&lt;/P&gt;&lt;P&gt; authentication open &lt;/P&gt;&lt;P&gt; authentication key-management wpa&lt;/P&gt;&lt;P&gt; guest-mode&lt;/P&gt;&lt;P&gt; wpa-psk ascii 0 xxxxxxxx&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ip source-route&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;no ip dhcp use vrf connected&lt;/P&gt;&lt;P&gt;ip dhcp excluded-address 192.168.70.1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ip dhcp pool internal&lt;/P&gt;&lt;P&gt;   network 192.168.70.0 255.255.255.0&lt;/P&gt;&lt;P&gt;   default-router 192.168.70.1 &lt;/P&gt;&lt;P&gt;   dns-server 192.168.70.1 &lt;/P&gt;&lt;P&gt;   lease 0 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ip cef&lt;/P&gt;&lt;P&gt;ip domain name router.com&lt;/P&gt;&lt;P&gt;ip name-server 87.x.x.x&lt;/P&gt;&lt;P&gt;ip name-server 87.x.x.x&lt;/P&gt;&lt;P&gt;ip inspect name INSPECTOUT tcp&lt;/P&gt;&lt;P&gt;ip inspect name INSPECTOUT udp&lt;/P&gt;&lt;P&gt;ip inspect name INSPECTOUT http&lt;/P&gt;&lt;P&gt;no ipv6 cef&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;multilink bundle-name authenticated&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;username xxxxx privilege 15 secret 5 xxxxxxxx&lt;/P&gt;&lt;P&gt;! &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;archive&lt;/P&gt;&lt;P&gt; log config&lt;/P&gt;&lt;P&gt;  hidekeys&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;bridge irb&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface ATM0&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt; no atm ilmi-keepalive&lt;/P&gt;&lt;P&gt; dsl operating-mode adsl2+ &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface ATM0.1 point-to-point&lt;/P&gt;&lt;P&gt; ip address xx.xx.xx.xx 255.255.240.0&lt;/P&gt;&lt;P&gt; ip access-group OUTSIDEIN in&lt;/P&gt;&lt;P&gt; ip nat outside&lt;/P&gt;&lt;P&gt; ip inspect INSPECTOUT out&lt;/P&gt;&lt;P&gt; ip virtual-reassembly&lt;/P&gt;&lt;P&gt; atm route-bridged ip&lt;/P&gt;&lt;P&gt; pvc 0/101 &lt;/P&gt;&lt;P&gt;  oam-pvc manage&lt;/P&gt;&lt;P&gt;  encapsulation aal5snap&lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface FastEthernet0&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface FastEthernet1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface FastEthernet2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface FastEthernet3&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; encryption mode ciphers tkip &lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; ssid wirelessnet&lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0 54.0&lt;/P&gt;&lt;P&gt; station-role root&lt;/P&gt;&lt;P&gt; bridge-group 1&lt;/P&gt;&lt;P&gt; bridge-group 1 subscriber-loop-control&lt;/P&gt;&lt;P&gt; bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt; bridge-group 1 block-unknown-source&lt;/P&gt;&lt;P&gt; no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt; no bridge-group 1 unicast-flooding&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan1&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt; bridge-group 1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface BVI1&lt;/P&gt;&lt;P&gt; ip address 192.168.70.1 255.255.255.0&lt;/P&gt;&lt;P&gt; ip nat inside&lt;/P&gt;&lt;P&gt; ip virtual-reassembly&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ip forward-protocol nd&lt;/P&gt;&lt;P&gt;ip route 0.0.0.0 0.0.0.0 xx.xx.xx.xx&lt;/P&gt;&lt;P&gt;ip http server&lt;/P&gt;&lt;P&gt;ip http authentication local&lt;/P&gt;&lt;P&gt;ip http secure-server&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ip dns server&lt;/P&gt;&lt;P&gt;ip nat inside source list 130 interface ATM0.1 overload&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ip access-list extended OUTSIDEIN&lt;/P&gt;&lt;P&gt; deny   udp any any&lt;/P&gt;&lt;P&gt; deny   tcp any any&lt;/P&gt;&lt;P&gt; deny   ip any any&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;access-list 130 permit ip 192.168.70.0 0.0.0.255 any&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;control-plane&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;bridge 1 protocol ieee&lt;/P&gt;&lt;P&gt;bridge 1 route ip&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;line con 0&lt;/P&gt;&lt;P&gt; login local&lt;/P&gt;&lt;P&gt; no modem enable&lt;/P&gt;&lt;P&gt;line aux 0&lt;/P&gt;&lt;P&gt;line vty 0 4&lt;/P&gt;&lt;P&gt; login local&lt;/P&gt;&lt;P&gt; transport input telnet ssh&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;scheduler max-task-time 5000&lt;/P&gt;&lt;P&gt;ntp server 192.43.244.18&lt;/P&gt;&lt;P&gt;end&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 14:08:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108519#M894036</guid>
      <dc:creator>shaw.chris</dc:creator>
      <dc:date>2019-03-11T14:08:06Z</dc:date>
    </item>
    <item>
      <title>Re: Incoming Access List blocking Outgoing Internet Access on 87</title>
      <link>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108520#M894037</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, does anyone have any idea what could be causing this or debugs to use? Thanks Chris&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Nov 2008 11:06:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108520#M894037</guid>
      <dc:creator>shaw.chris</dc:creator>
      <dc:date>2008-11-05T11:06:33Z</dc:date>
    </item>
    <item>
      <title>Re: Incoming Access List blocking Outgoing Internet Access on 87</title>
      <link>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108521#M894038</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, could anyone help me with this please, I still haven't been able to get this problem resolved&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks, Chris&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 16 Nov 2008 21:48:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108521#M894038</guid>
      <dc:creator>shaw.chris</dc:creator>
      <dc:date>2008-11-16T21:48:10Z</dc:date>
    </item>
    <item>
      <title>Re: Incoming Access List blocking Outgoing Internet Access on 87</title>
      <link>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108522#M894039</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Try removing the inspection from the ATM0.1 interface and place it on the BVI1 instead in the inbound direction i.e &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip inspect INSPECTOUT in&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps .. please rate helpful posts  !!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Nov 2008 06:22:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108522#M894039</guid>
      <dc:creator>Fernando_Meza</dc:creator>
      <dc:date>2008-11-17T06:22:25Z</dc:date>
    </item>
    <item>
      <title>Re: Incoming Access List blocking Outgoing Internet Access on 87</title>
      <link>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108523#M894040</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are you still having problems with your config?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I could help you but I don't wanna type here too much in case you resolved your problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Remi&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Nov 2008 02:13:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108523#M894040</guid>
      <dc:creator>remi-reszka</dc:creator>
      <dc:date>2008-11-19T02:13:55Z</dc:date>
    </item>
    <item>
      <title>Re: Incoming Access List blocking Outgoing Internet Access on 87</title>
      <link>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108524#M894042</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You would need to rewrite your config a little bit. First of all I would apply your inspect rule to your inside interface in "in" direction. Also create ACL to allow all ip traffic out if you wish and apply it to the inside interface also in "in" direction.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In order for CBAC feature to work you need to specify inspected traffic like tcp or udp by creating an ACL an allowing this traffic through the interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For the outside interface block all the traffic "in" unless you need to allow some of it and you don't need to apply the inspect rule over there unless you allow traffic through from the outside.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The traffic once allowed from inside to outside will be inspected and allowed back into inside.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if you have any more troubles.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Remi&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Nov 2008 02:27:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108524#M894042</guid>
      <dc:creator>remi-reszka</dc:creator>
      <dc:date>2008-11-19T02:27:37Z</dc:date>
    </item>
    <item>
      <title>Re: Incoming Access List blocking Outgoing Internet Access on 87</title>
      <link>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108525#M894043</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks I'll give this a go, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;BTW adding "ip inspect INSPECTOUT in" to the BVI interface inbound didn't work&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Strange thing is, I set up another 877w which worked ok with the same inspect/ACL rules as in my config. The only difference was that it had a Dialer0 interface that I applied the rules to.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Chris&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Nov 2008 08:33:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108525#M894043</guid>
      <dc:creator>shaw.chris</dc:creator>
      <dc:date>2008-11-19T08:33:37Z</dc:date>
    </item>
    <item>
      <title>Re: Incoming Access List blocking Outgoing Internet Access on 87</title>
      <link>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108526#M894045</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is this interface BVI1? I didn't work with 877W series yet, soon I'll be buying one but probably 881W. I guess it's not for wireless access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Why don't you create a VLAN interface, add certain FastEthernet to it, add inspect rule in the same direction as you apply ACL to it. Don't forget you may need to adjust mss on the inside interface. Or even work with VLAN1 and apply rules to this interface just to check whether your config works.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know how it works.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Remi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Nov 2008 15:36:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108526#M894045</guid>
      <dc:creator>remi-reszka</dc:creator>
      <dc:date>2008-11-19T15:36:26Z</dc:date>
    </item>
    <item>
      <title>Re: Incoming Access List blocking Outgoing Internet Access on 87</title>
      <link>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108527#M894046</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;BVI1 is needed to set up a Bridge in order to use both the LAN ports and WLAN&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Nov 2008 15:45:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108527#M894046</guid>
      <dc:creator>shaw.chris</dc:creator>
      <dc:date>2008-11-19T15:45:18Z</dc:date>
    </item>
    <item>
      <title>Re: Incoming Access List blocking Outgoing Internet Access on 87</title>
      <link>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108528#M894050</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yeah, I found out already but thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Nov 2008 15:47:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108528#M894050</guid>
      <dc:creator>remi-reszka</dc:creator>
      <dc:date>2008-11-19T15:47:37Z</dc:date>
    </item>
    <item>
      <title>Re: Incoming Access List blocking Outgoing Internet Access on 87</title>
      <link>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108529#M894052</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I tried adding an access-rule to allow all traffic inward into the BVI1 interface along with the inspect rule inward into the BVI1 interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I also added the access-group inward to the ATM0.1 interface that blocks all traffic&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Unfortunately the same issue occured and I can not access out from the LAN to the Internet&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Chris&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 22 Nov 2008 11:39:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/incoming-access-list-blocking-outgoing-internet-access-on-877w/m-p/1108529#M894052</guid>
      <dc:creator>shaw.chris</dc:creator>
      <dc:date>2008-11-22T11:39:24Z</dc:date>
    </item>
  </channel>
</rss>

