Wanted to thank everyone for their help. We were able to get things straightened out on our ASA 5550. I have another 5550 we are going to be using as the passive failover. I plan to redistribute the VLAN's across more interfaces in the near future, thanks for the tip.
Ok, so what takes presidence the implicit Deny on each interface or the same-security-traffic permit inter-interface command. The same-security-traffic permit inter-interface command is technically applied first in the config.
Your are right. I guess I might not be understanding how the same-security-traffic permit inter-interface command works. My understanding is that as long as I have the same-security-traffic permit inter-interface command active traffic should be allowed between interfaces at the same security...
I'll give a for instance. If I am on a server on VLAN 1428, and try to RDP to another server on VLAN 1433 the traffic is blocked. If I am on a server on VLAN 1433 and try to RDP to a server on 1431, the connection works just fine. All three of these VLANS are Security Level 100 and I have the...
We have 8 subinterfaces (VLANS) configured on a ASA 5550. We are essentially using the ASA to route between the VLANS. Our admin vlan traffic is being blocked going to other interfaces by the implicit Deny ACL. Other vlans with the same security levels are able to talk between each other. We...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.