cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
919
Views
0
Helpful
6
Replies

ASA firewall policy

whanson
Level 7
Level 7

Let's suppose you have a server that is accessed via telnet.  Further let us suppose that this application wasn't written very well such that it issues packets that don't have an associated syn or whatever.  Now in a LAN environment who cares but in a firewall environment these packets are thrown away rather than the end point saying, ,"HuH?"  Bottomline is there a way to stop the ASA firewall from inspecting something related to a specific host. In other words have the ASA just pass it through even though there isn't a state or the application is not playing by the rules.  I suspect not but thought I would ask.

thx

6 Replies 6

Julio Carvajal
VIP Alumni
VIP Alumni

Hello Whanson,

I would say TCP state-bypass. This will not inspect the TCP protocol on a stateful way.

That should do it!

Regards,

Julio

Do rate all the helpful posts!!

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

Where is that command entered? And thx

Sorry found it as part of policymap thx again

Hello,

Correct. let me know if I can do something else for you.

Otherwise please mark the question as answered so future users can learn from this.

Regards,

Julio

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

Your are the man. Thank you very much.

Hello Whanson,

It is my pleasure to help!

please mark the question as answered so future users can learn from this.

Julio

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC
Review Cisco Networking for a $25 gift card