Cisco ASA Series Cli Configuration Manual page 155

Software version 9.0 for the services module
Hide thumbs Also See for ASA Series:
Table of Contents

Advertisement

Chapter 1
Configuring the Transparent or Routed Firewall
A DMZ User Attempts to Access an Inside Host
Figure 1-7
Figure 1-7
Inside
User
10.1.2.27
The following steps describe how data moves through the ASA (see
1.
2.
shows a user in the DMZ attempting to access the inside network.
DMZ to Inside
Outside
209.165.201.2
10.1.2.1
10.1.1.1
Web Server
10.1.1.3
A user on the DMZ network attempts to reach an inside host. Because the DMZ does not have to
route the traffic on the Internet, the private addressing scheme does not prevent routing.
The ASA receives the packet and because it is a new session, the ASA verifies if the packet is
allowed according to the security policy (access lists, filters, AAA).
The packet is denied, and the ASA drops the packet and logs the connection attempt.
DMZ
Cisco ASA Series CLI Configuration Guide
Firewall Mode Examples
Figure
1-7):
1-19

Advertisement

Table of Contents
loading

Table of Contents