cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
485
Views
1
Helpful
2
Replies

Firewall Migration Tool ignores ASA interface out ACL

Network Diver
Level 3
Level 3

Hi,

I'm trying migrate ASA 9.16 access-lists and objects using Firewall Migration Tool 7.0.1 to a FTD. So far only the access-lists defined by "access-group in interface" are migrated. All the ACLs "access-group out interface" are ignored.

access-group <ifname>_access_in in interface <ifname>
access-group <ifname>_access_out out interface <ifname>

Am I missing something? I haven't found an option in the migration tool to select also the interface out ACLs. Am I the only one who ever used ACLs matching interface outbound or is it yet another bug with ASA in multicontext mode? I would expect that the migration tools generates FTD rules with the interface as destination zone.

Regards,

Bernd

1 Accepted Solution
2 Replies 2

Create image: Cisco logo with a facepalm emoticon

cisso.jpg

CheatGPT won't win any of US spelling bee contests ...

Review Cisco Networking for a $25 gift card