<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Access rule is not working. in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402968#M953724</link>
    <description>&lt;P&gt;Inside to outside is ok, but outside (un-trusted traffic coming in always bad - until there is a requirement for specific rule).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To make Granular and best practice always permit what required, and rest let it go to deny deny in the last rule&lt;/P&gt;
&lt;P&gt;on both Inside and outside.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BB&lt;/P&gt;</description>
    <pubDate>Wed, 20 Jun 2018 21:30:14 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2018-06-20T21:30:14Z</dc:date>
    <item>
      <title>Access rule is not working.</title>
      <link>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402910#M953719</link>
      <description>&lt;P&gt;So, I have the ASA 5505 Firewall. I generate an ACL to block three IP. Those IP are from outside and are generating fraffic with an internal server.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="reglas.JPG" style="width: 982px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/13622iA146BA0B57826D90/image-size/large?v=v2&amp;amp;px=999" role="button" title="reglas.JPG" alt="reglas.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;After aome hours I still get traffic from those IPs as you can see in the nex image:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="pie.JPG" style="width: 877px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/13624iFC27991F9B00D686/image-size/large?v=v2&amp;amp;px=999" role="button" title="pie.JPG" alt="pie.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The IP&amp;nbsp;181.174.99.146 should be blocked, but it is not. I will apreciate any explanation so I can understand why is this happening.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Sorry about my english.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:54:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402910#M953719</guid>
      <dc:creator>AlfredoA</dc:creator>
      <dc:date>2020-02-21T15:54:15Z</dc:date>
    </item>
    <item>
      <title>Re: Access rule is not working.</title>
      <link>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402921#M953720</link>
      <description>&lt;P&gt;I believe if the the traffic initiated from inside it still work, but the source coming from outside it should block.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;depends on how you configured, since its object we can not see what is inside that group&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;better watch on Monitoring see is that allowed from outside to inside or inside to outside.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;* After configure rule have you saved and published the config.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BB&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jun 2018 20:14:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402921#M953720</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2018-06-20T20:14:31Z</dc:date>
    </item>
    <item>
      <title>Re: Access rule is not working.</title>
      <link>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402937#M953721</link>
      <description>Actually I think I get it now. It was working coming from outside. The problem is the traffic initiated from inside. I'll add an ACL outside (outgoing rules) to make it work. &lt;BR /&gt;&lt;BR /&gt;Thanks.</description>
      <pubDate>Wed, 20 Jun 2018 20:37:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402937#M953721</guid>
      <dc:creator>AlfredoA</dc:creator>
      <dc:date>2018-06-20T20:37:00Z</dc:date>
    </item>
    <item>
      <title>Re: Access rule is not working.</title>
      <link>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402948#M953722</link>
      <description>&lt;P&gt;Yes good catch. let me know how to goes.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BB&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jun 2018 20:53:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402948#M953722</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2018-06-20T20:53:38Z</dc:date>
    </item>
    <item>
      <title>Re: Access rule is not working.</title>
      <link>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402952#M953723</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I've created new rules:&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="nuevas reglas.JPG" style="width: 960px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/13630i7AFFD40826EF08C5/image-size/large?v=v2&amp;amp;px=999" role="button" title="nuevas reglas.JPG" alt="nuevas reglas.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do yo think I need a rule: permit: any - any in the outside interface? as I did in the inside interface?&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jun 2018 20:57:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402952#M953723</guid>
      <dc:creator>AlfredoA</dc:creator>
      <dc:date>2018-06-20T20:57:51Z</dc:date>
    </item>
    <item>
      <title>Re: Access rule is not working.</title>
      <link>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402968#M953724</link>
      <description>&lt;P&gt;Inside to outside is ok, but outside (un-trusted traffic coming in always bad - until there is a requirement for specific rule).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To make Granular and best practice always permit what required, and rest let it go to deny deny in the last rule&lt;/P&gt;
&lt;P&gt;on both Inside and outside.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BB&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jun 2018 21:30:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/access-rule-is-not-working/m-p/3402968#M953724</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2018-06-20T21:30:14Z</dc:date>
    </item>
  </channel>
</rss>

