Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Same security level interfaces with access lists

We have an ASA 5510 with 3 connections, outside, inside and point2point running version 8.2 without nat control. We need hosts on the inside interface to communicate to hosts on the point2point interface. When we use the same-security-traffic permit inter-interface all works fine but we need to limit host to host traffic so we think ACLs will be the solution. Is there a way to establish inter interface traffic without same-security-traffic permit inter-interface and use access-lists or use this global command with access lists?

Thanks for any help.

Jeff

1 REPLY

HiYes, as you were saying,

Hi

Yes, as you were saying, the best way is to configure the two interfaces with different security-levels and then use ACLs to restric the traffic.

53
Views
0
Helpful
1
Replies
CreatePlease to create content