cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
417
Views
0
Helpful
2
Replies

Cisco PIX Access-list order

Hello,

short question:

In what order will the access-list on a cisco pix be treated ?

I know that it is from top to down and the first matching will be used.

But how is the behaviour when you use names instead of numbers ?

e.g:

access-list 120 permit IP any any

access-list ipsec permit ip any any

Thanks for your help

Kai

2 Replies 2

m.sir
Level 7
Level 7

After creating of access-list you need apply this list to interface (or to crypto map etc..) and every interface can has only one access list .... so there are no relation between access-list and if traffic flows through firewall checked is only applied access list

M.

Hope that helps rate if it does

Ok, then this means no matter what kind of number or name for the access-list because it will be always applied to crypto map with matching address/access-list

right ?

Review Cisco Networking for a $25 gift card