[c-nsp] EasyVPN IOS->ASA55xx

Peter Rathlev peter at rathlev.dk
Tue Apr 1 05:33:49 EDT 2008


On Tue, 2008-04-01 at 09:05 +0100, William wrote:
> The command same-security-traffic permit intra-interface is not in the
> config but am I likely to break anything if I use it?

Well, you're likely to break the security that is there from the
beginning, without this command. You could compare it to "local proxy
arp". It will not stop any traffic flows that already work, just allow
some more ones.

Reference for the command:

http://www.cisco.com/en/US/docs/security/asa/asa72/command/reference/s1_72.html#wp1289167
http://tinyurl.com/2ateua

Regards,
Peter




More information about the cisco-nsp mailing list