ASA - Security Levels Question
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-03-2009 10:47 AM - edited 03-11-2019 08:14 AM
I understand that you can go from a higher security interface to a lower security interface without configuring acls. The ASDM shows that there is an implicit rule allowing this. My question is - once I configure an access rule on the ASDM, that line disappears. Does that mean that I no longer have an implicit rule allowing me to go from a higher security interface to a lower security interface. I am entering a rule to allow a DMZ interface (level 50) to reach some internal servers on the inside (level 100). Once I configure this rule, have I now cutoff access to the level 0 interface?
Thanks,
Jim
- Labels:
-
NGFW Firewalls

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-03-2009 01:55 PM
Jim,
No, the higher levels will still be able to go out. Have you noticed a problem?
HTH,
John
