I tested today the establishment of a Route Based IPsec VPN between the ASA and the FTD.Everything works fine however I was surprised that on the ASA I didn't have to add a single ACL.I wonder if traffic destined to the tunnel is treated like traffic...