cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
7484
Views
20
Helpful
15
Replies

ASA 5510 DMZ config

jsdurstjsdurst
Level 1
Level 1

Hi!  I've configured a DMZ on my ASA 5510 using ASDM 6.4.

The DMZ has a security level of 25.  I added an ACL to allow the servers in the DMZ to communicate to a couple of our backend databases on our internal network over SQL ports.

My problem is that once I configured the ACL, the whole security level concept seems to have gone out the window.  In order to allow the DMZ servers to freely initiate communication to the outside world, I had to add a deny entry to prevent further access to my internal networks, then right below I had to allow IP any any.  This gives the same effect I guess, but its kinda tedious.  Is there a way to get the Implicit rule back that stated a destination "Any less secure networks"?  It disappeared once I configured the rule.

Thanks for any assistance.

Jeremy

15 Replies 15

Thank you very much for the help!

Review Cisco Networking for a $25 gift card