Tuesday, June 23, 2020

Permit ip any any on ASA firewalls

I'm not sure how common this is, but I have the fortune of working for a place that has permit ip any any rules on ASA firewalls, and we've been afraid to tackle that because we don't want to break anything.

Is there a methodical way to see what traffic is hitting the explicit permit on an inbound ACL so we can slowly create explicit rules and eliminate the explicit permit?



No comments:

Post a Comment