Cisco ASA 5540 IN and OUT problem

Document

Aug 24, 2011 12:07 PM
Aug 17th, 2011

Recently I have a traffic denied problem with Cisco ASA 5540 after adding a new and only ACL " permit ip any any" at one of the "OUT" interface. All  interfaces on the ASA already have an exsiting ACL on the "in". Traffic was normal until that "harmless" rule was added in the "OUT" interface. Once that rule was remove, traffic flow was back to normal.

Can anyone help to advise on the possible cause of  this problem?

Perhaps we should not have ACL apply in the "IN" and "OUT" of the same interface??

Overall Rating: 0 (0 ratings)
praprama Wed, 08/24/2011 - 12:07

Hi,

Please post your questions as a discussion instead of a document.

About this issue, can you explain a bit further as to what traffic was being denied? Was it working intemittently or completely denied. There should ideally not be any issues with inbound and outbound acls on an interface.

Regards,

Prapanch

Actions

Login or Register to take actions

This Document

Posted August 17, 2011 at 2:50 AM
Updated August 17, 2011 at 2:59 AM
Stats:
Comments:1 Overall Rating:0
Views:626 Contributors:1
Shares:0
Tags: No tags.