Indeed I have configured IP address else the ASA won't pass the traffic
right?

I think, we should be in the par with what Cisco says. Only ARP is allowed
and others need access-list to be allowed across.

BTW, I observed BPDU also moving freely across without ACL.




With regards
Kings

On Sat, May 22, 2010 at 6:10 PM, Piotr Matusiak <[email protected]> wrote:

> As far as I know you need ACL in transparent mode only to allow m-cast
> traffic. Unicast packets should pass freely from higher to lower security
> level. Make sure you have IP address assigned to the box.
>
> HTH,
> Piotr
>
>
> 2010/5/22 Kingsley Charles <[email protected]>
>
>> The behaviour that I have mentioned is not consistent. If anyone has seen
>> this, please do let me know.
>>
>>
>>
>> With regards
>> Kings
>>
>>
>> On Sat, May 22, 2010 at 4:18 PM, Kingsley Charles <
>> [email protected]> wrote:
>>
>>> Hi all
>>>
>>> I am using 8.0(4) in ASA and the mode is transparent firewall.  For IP
>>> traffic to pass from higher security to lower security, I have no
>>> access-list configured. It just behaves like routed mode ASA.
>>>
>>> Any idea, when did this change happen?
>>>
>>>
>>> Earlier, we needed access-list to be configured even from higher to lower
>>> security level.
>>>
>>>
>>> With regards
>>> Kings
>>>
>>
>>
>> _______________________________________________
>> For more information regarding industry leading CCIE Lab training, please
>> visit www.ipexpert.com
>>
>>
>
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Reply via email to