cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
578
Views
5
Helpful
1
Replies

ACL and same-security-traffic command

marco78
Community Member

Hi all,

i've one question about FWSM configuration: if i've 3 VLAN associated to firewall with same security ID and i use the same-security-traffic permit command, is necessary to implemet ACL to permit traffic between them or not?

Thanks

1 Reply 1

scoclayton
Level 11
Level 11

Yes, you still need to implement ACL's to permit or deny the traffic between the hosts on the 3 interfaces in question. The "same-security-traffic permit inter-interface" keeps you from having to worry about NAT. Take a look at the link below for some more info.

http://www.cisco.com/en/US/products/hw/switches/ps708/products_module_configuration_guide_chapter09186a00802010d7.html#wp1052504

Scott