cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
356
Views
0
Helpful
1
Replies

ASA Query

jawwadparacha
Level 1
Level 1

Hello

Three zones/interface are used on ASA

Internet - security level 0

Inside - security level 100 with ipsec configured for vpn clients

DMZ - security level 100

Traffic from Inside to Internet works fine without ACL.

Traffic from DMZ to Internet works when ACL is applied.

As per my knowledge traffic from higher security zone to lower zone is allowed by default.

Please suggest what could be the reason here.

Regards

Jawwad

1 Reply 1

Julio Carvajal
VIP Alumni
VIP Alumni

It should be permited by default...

does not make any sense

Can you share the configuration while not working, and the IP address of the source and destination you are using

Regards

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card