cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
456
Views
0
Helpful
3
Replies

Access List

I have a cisco ASA 5506-X and want to ping two host. One on the outside interface and one on the inside interface

When i create an access list and appy to it the deny icmp action did not work. The running ping is still ok.

When i stop the ping and restart it after few seconds the asa blocks the icmp. 

Why did the access list not work after i appy to it?  Only after few seconds and a restart?

Thanks

3 Replies 3

Matias Ortiz
Level 1
Level 1

Is this only for ICMP or should i always inspect to block a traffic for other ports?

Hi Raimund Schimanovits, Only for ICMP, if you match correctly source and destination on the ACL, this should work. Also, you can check with packet tracer if traffic is matching with ACL.

Regards.-

Review Cisco Networking for a $25 gift card