08-02-2018 04:38 AM - edited 02-21-2020 08:02 AM
Dear All,
In ASA, all traffic allowed by default from higher to lower zone i.e. inside to outside.
1) Do we need to allow return traffic on outside interface ? if yes then understanding will like this, traffic allowed by default from inside to outside but return traffic should be allowed on outside interface in inbound direction. correct?
2) Please clarify whether all type of traffic and all ports TCP/UDP allowed by default from inside to outside ? absolutely all traffic ??? or certain ports are not allowed by default from Inside to outside?
regards,
Sourabh
Solved! Go to Solution.
08-02-2018 04:57 AM
08-02-2018 06:21 AM
in a nutshell, access lists are applied in an ingress direction, so, if you initiate, yes initiate ttraffic for instance on port 80 and hit your inside interface to go to cnn.com the the response from cnn does NOT have to be explicitly permitted.
08-02-2018 04:57 AM
08-02-2018 06:21 AM
in a nutshell, access lists are applied in an ingress direction, so, if you initiate, yes initiate ttraffic for instance on port 80 and hit your inside interface to go to cnn.com the the response from cnn does NOT have to be explicitly permitted.
08-02-2018 11:20 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide