cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
270
Views
0
Helpful
1
Replies

ASA is reponding on port 110 while ACL denies the traffic

Jim Main
Level 1
Level 1

Hi there ... I've a couple of ASA that when scanning, were reporting to have TCP port 110 open

Configuration doesn't allowed that, so even with an explicit ACL entry denying that traffic, port 110 was still responding

I telnet to port 110 to any natted IP or even the physical interface IP on the outside, and TCP connection was established, while at the same time, the logs show "access denied by ACL .etcetc"

So, traffic is denied by ACL, I don't see any connection established on the firewall but even though, the tcp connection handshake goes through and establishes connection against something

What could be happening here?

1 Reply 1

michael o'nan
Level 4
Level 4

Post your config and someone will be able to tell you.

Review Cisco Networking for a $25 gift card