cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
299
Views
3
Helpful
1
Replies

Security Level and FWSM

pslavkovsky
Level 1
Level 1

Hi,

I read that all traffic on FWSM is explicitly denied. How is a sense of security level for FWSM?

Thanks

Peter

1 Reply 1

Jon Marshall
Hall of Fame
Hall of Fame

Hi Peter

Yes you do need to explicitly allow traffic with an access-list even if traffic is going from the inside interface (highest security level) to the outside (lowest security level).

But all the other rules still apply in that you can give interfaces the same security level and have traffic flow between them without access-list, you still need to setup static NAT translations for lower to higher level security interfaces (unless you turn off NAT) so it's still pretty much the same as you are presumably used to.

HTH

Jon

Review Cisco Networking for a $25 gift card