Monday, April 2, 2018

Limiting Inbound Traffic on a S2S VPN - Cisco ASA

Is it possible to limit inbound traffic from a S2S VPN on a Cisco ASA similar to an access rule?

Inbound traffic seems to completely bypass my access rules. I don't have sysopt connection permit-vpn enabled.

The crytomaps identify interesting traffic with ACLs that have no in/out direction, and they're not available as "interface" in access rules. You can see them under Advanced > ACL Manager in ASDM but again they have no direction only identify outbound interesting traffic.

Thanks for any help anyone can provide!



No comments:

Post a Comment