cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
236
Views
0
Helpful
1
Replies

Quick question re Access-lists Outside & Inside

darrenriley5
Level 1
Level 1

New to networking so just need someone to confirm this please regarding ASA firwall. If I have created an access-list on the outside interface which allows an outside device to to create a connection to a specific ip address and port on the inside do I also need to create an entry on the inside interface access-list to allow the return traffic?

Many Thanks

Darren

1 Reply 1

handsy
Level 1
Level 1

Short answer: No you don't

Long answer: Cisco ASA firewalls are stateful, therefore when a connection is built in 1 direction, the other direction is automatically allowed. Also, a connection iniating from inside (high security interface) to outside (low security) is automatically allowed through so long as an accompanying NAT rule is in place.

Hope this helps :)

Please rate posts if they help you.

Review Cisco Networking products for a $25 gift card