ivarnhagen Sun, 08/02/2009 - 01:25
User Badges:


To my knowlege there is no feature that does this on the ASA...most of the time, traffic destined towards the ASA would be limited/restricted:


Why would you want to restrict traffic sourced from the ASA? (since it is initiated by the admin most of the time) If we understand the background of your requirement, we might be able to provide an alternative solution.


mheuzenroeder Sun, 08/02/2009 - 15:02
User Badges:

Hi Ivarn,

I understand your logic.

I thought it might be possible to restrict like on IOS an "access-class out" can be put on a vty to limit where it can go to.

Regards, MH

Collin Clark Sun, 08/02/2009 - 19:11
User Badges:
  • Purple, 4500 points or more

Since the ASA is a security device it is not allowed to telnet/ssh to other systems. It can ftp/http for image downloads and send syslog, but that's about it (that I can think of off the top of my head).


This Discussion