FirewallWizards
[Top] [All Lists]

Re: [fw-wiz] Odd Cisco ASA question. . .

To: Firewall Wizards Security Mailing List <firewall-wizards@listserv.icsalabs.com>
Subject: Re: [fw-wiz] Odd Cisco ASA question. . .
From: Craig Van Tassle <craig@codestorm.org>
Date: Tue, 12 Jun 2007 15:09:59 -0500
Delivered-to: sp-com-lists@consult.net
Delivered-to: fwwizards-list2@consult.net
Delivered-to: firewall-wizards@listserv.icsalabs.com
In-reply-to: <4AD03C567B3E447D838B25E1D09E0A8A@lordchariot.com>
List-archive: <https://listserv.icsalabs.com/pipermail/firewall-wizards>
List-help: <mailto:firewall-wizards-request@listserv.icsalabs.com?subject=help>
List-id: Firewall Wizards Security Mailing List <firewall-wizards.listserv.icsalabs.com>
List-post: <mailto:firewall-wizards@listserv.icsalabs.com>
List-subscribe: <https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards>, <mailto:firewall-wizards-request@listserv.icsalabs.com?subject=subscribe>
List-unsubscribe: <https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards>, <mailto:firewall-wizards-request@listserv.icsalabs.com?subject=unsubscribe>
References: <W40552269814271181340594@webmail1> <4AD03C567B3E447D838B25E1D09E0A8A@lordchariot.com>
Reply-to: Firewall Wizards Security Mailing List <firewall-wizards@listserv.icsalabs.com>
Sender: firewall-wizards-bounces@listserv.icsalabs.com
User-agent: Thunderbird 2.0.0.0 (X11/20070508)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

The ASA can do that, but I've done it more with van's. It would be helpfully if 
you could give a bit more detail on your
layout and what exactly you are looking at. Also Logs could help quite a bit.



lordchariot@embarqmail.com wrote:
>>> Problem is, it appears a LOT of my filtering is over a single interface.
> Don't understand. What does this mean? Are you seeing inbound traffic going
> back out through the same interface?
> KS1500s could handle that with ease (although not recommended), don't know
> about the ASA.
> 
> -----Original Message-----
> From: firewall-wizards-bounces@listserv.icsalabs.com
> [mailto:firewall-wizards-bounces@listserv.icsalabs.com] On Behalf Of Keith
> A. Glass
> Sent: Friday, June 08, 2007 6:10 PM
> To: firewall-wizards@listserv.icsalabs.com
> Subject: [fw-wiz] Odd Cisco ASA question. . .
> 
> Here's my situation: I'm having to replace several old Cyberguard KS-1500s
> with new Cisco ASA 5500's.  Problem is, it appears a LOT of my filtering is
> over a single interface.
> 
> It doesn't help that we're on an entirely private network, and subnets have
> been added willy-nilly.
> 
> And re-organizing the network is NOT a player.
> 
> Suggestions ?  Other than "Down, not across", that is. . . .
> 
> 
> 
> _______________________________________________
> firewall-wizards mailing list
> firewall-wizards@listserv.icsalabs.com
> https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
> 
> _______________________________________________
> firewall-wizards mailing list
> firewall-wizards@listserv.icsalabs.com
> https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.4 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFGbv2Wv8bO71D0xskRAsW2AKC67oZTJgyrn2sF+NO4wbwVDWqIZwCdFkyv
+lcgnM2XQbUzS66YMwERs88=
=0TGD
-----END PGP SIGNATURE-----
_______________________________________________
firewall-wizards mailing list
firewall-wizards@listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards

<Prev in Thread] Current Thread [Next in Thread>