cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
700
Views
0
Helpful
2
Replies

Firewall Sub Interfaces

andy.winford
Level 1
Level 1

I have created sub interfaces in the past and applied access-lists to each sub interface.  However, is it possible to apply a single access-list to the parent interface with rules referencing multiple sub interfaces in that access-list?


Thanks in advanced...

Andy

2 Replies 2

Allen P Chen
Level 5
Level 5

Hello,

What software version is your ASA running?

In software version 8.3 and above, you can apply a "global" access-list, which will apply to all interfaces on the ASA.  Here is the reference guide for this command:

http://www.cisco.com/en/US/docs/security/asa/asa83/command/reference/a1.html#wp1597389

Unfortunately, there is no command available to apply an access-list to the physical interface and have it cascade down to all logical interfaces under the physical interface.

Hope this helps.

Thanks buddy.

Andy Winford

CISSP, CCSP

Systems Engineer (SE), Network Infrastructure & Services Practice

United Data Technologies

Review Cisco Networking for a $25 gift card