04-04-2013 06:10 PM - edited 03-11-2019 06:23 PM
Hi Everyone,
Need to know if default class inspection policy matches the incoming or outging traffic flowing through the ASA?
Example when i ping from PC connecting to the ASA to outside world will then it will match icmp traffic entering the ASA then ICMP reply coming
to outside interface?
Thanks
MAhesh
Solved! Go to Solution.
04-04-2013 07:30 PM
Hello,
The ASA is stateful in both directions, so the policy matches incoming and outgoing traffic.
What happens is that you also have security levels, so from high to low it is allow but from low to high it will be deny unless you configure an ACL.
Regards,
Felipe.
04-04-2013 07:30 PM
Hello,
The ASA is stateful in both directions, so the policy matches incoming and outgoing traffic.
What happens is that you also have security levels, so from high to low it is allow but from low to high it will be deny unless you configure an ACL.
Regards,
Felipe.
04-04-2013 07:40 PM
Hi Felipe,
Many thanks for Prompt reply.
ASA is interesting world.
Regards
MAhesh
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide