<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Security Level and FWSM in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/security-level-and-fwsm/m-p/862035#M960291</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I read that all traffic on FWSM is explicitly denied. How is a sense of security level for FWSM?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Peter&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 11:33:36 GMT</pubDate>
    <dc:creator>pslavkovsky</dc:creator>
    <dc:date>2019-03-11T11:33:36Z</dc:date>
    <item>
      <title>Security Level and FWSM</title>
      <link>https://community.cisco.com/t5/network-security/security-level-and-fwsm/m-p/862035#M960291</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I read that all traffic on FWSM is explicitly denied. How is a sense of security level for FWSM?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Peter&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 11:33:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/security-level-and-fwsm/m-p/862035#M960291</guid>
      <dc:creator>pslavkovsky</dc:creator>
      <dc:date>2019-03-11T11:33:36Z</dc:date>
    </item>
    <item>
      <title>Re: Security Level and FWSM</title>
      <link>https://community.cisco.com/t5/network-security/security-level-and-fwsm/m-p/862036#M960292</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Peter&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes you do need to explicitly allow traffic with an access-list even if traffic is going from the inside interface (highest security level) to the outside (lowest security level).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But all the other rules still apply in that you can give interfaces the same security level and have traffic flow between them without access-list, you still need to setup static NAT translations for lower to higher level security interfaces (unless you turn off NAT) so it's still pretty much the same as you are presumably used to.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Nov 2007 11:40:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/security-level-and-fwsm/m-p/862036#M960292</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2007-11-21T11:40:46Z</dc:date>
    </item>
  </channel>
</rss>

