Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
What's the relationship between inbound interface acl's and application inspection?Do the acl's get processed before the class-map statement creates the traffic class for the inspect command?
I'm trying to use the logging facility to refine an Access List in a test network. At the end of a list of ACE's I have a "permit ip any any log 5"I had the idea that only the flows that had fallen through all of my other rules would reach this last...
Thanks so much for your answer. It makes sense and is in line with some documentation I saw regarding routers and CBAC. I couldn't find anything explicit for the PIX, though.There's just one more thing that, perhaps, you could confirm for me. I as...
I just wanted to follow up in case anyone else runs into the same problem. I eventually created a different access-list with the exact same entries. When I switched over to it with the access-group command, logging began to behave in the expected ma...
Hi Federico,I double checked my ACL and the log option is only present on that last "permit any any" statement. There are no "deny" statments in the list at all.I did use PDM to turn on the logging option but the list was originally configured with ...