cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
442
Views
0
Helpful
1
Replies

CSS ACL's

jmcglashan
Level 1
Level 1

Does anyone know if CSS ACL's are stateful connections once a flow has been created ? eg If i make a connection which looks at the acl clause and i am permitted (which creates a flow) are subsequent packets checked at acl's or does it use the flow therfore bypassing the acl.

1 Reply 1

Gilles Dufour
Cisco Employee
Cisco Employee

first FCB check then ACL.

So once a flow is created there is no ACL check.

But the ACL is pretty basic - just checking Layer 3 and Layer 4 - so if the first packet is permitted all other packets should also be permitted.

Gilles.

Review Cisco Networking for a $25 gift card