cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
203
Views
5
Helpful
2
Replies

What is the result of placing, on ASA outside int, ACL...

jmaxwellUSAF
Enthusiast
Enthusiast

Hello.

On an ASA 1120, what is the result of placing on the outside interface, an ACL with a single entry "permit IP any any"?

Thank you.

1 Accepted Solution

Accepted Solutions

Rob Ingram
VIP Master VIP Master
VIP Master

@jmaxwellUSAF that is unwise and insecure, you are permitting all traffic from the internet (assuming the outside interface is connected to the internet) into the LAN. With a firewall you explictly permit the traffic you want and deny the rest.

View solution in original post

2 Replies 2

Rob Ingram
VIP Master VIP Master
VIP Master

@jmaxwellUSAF that is unwise and insecure, you are permitting all traffic from the internet (assuming the outside interface is connected to the internet) into the LAN. With a firewall you explictly permit the traffic you want and deny the rest.

Thank you. 

I just wanted to confirm before I confront my boss who did this!

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Recognize Your Peers