cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
6646
Views
0
Helpful
1
Replies

Allow NTP traffic through ASA Firewall

FAISAL
Level 1
Level 1

Hi ,

 

I am trying to allow NTP traffic from my the Network to reach public NTP servers in the internet, the traffic is going through ASA firewall, what kind of access list I have to apply to the inbound and outbound interfaces? I assume UPD ports from any to public NTP server IP equal 123 this for inside interface.

For outside: from UDP (The Public NTP Server IP) port 123 to any.

 

Please support.

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

As long as the outbound requests are allowed the return traffic will be part of a tracked flow and will not need any inbound access list entry.

 

By default traffic is allowed from higher security level to lower (i.e. inside to outside). Once you any add ACL that behavior changes and you would need to allow ntp from your inside network or hosts to the outside.

Review Cisco Networking for a $25 gift card