16-2
Cisco ASA 5500 Series Configuration Guide using ASDM
OL-20339-01
Chapter 16 Adding a WebtypeACL
Default Settings
IPv6 Guidelines
Supports IPv6.
Additional Guidelines and Limitations
The following guidelines and limitations apply to Webtype ACLs:
• Smart tunnel ACEs filter on a per-server basis only, so you cannot create smart tunnel ACEs to
permit or deny access to directories or to permit or deny access to specific smart tunnel-enabled
applications.
Default Settings
Table 16-1 lists the default settings for Webtype access lists parameters.
Using Webtype ACLs
This section includes the following topics:
• Task Flow for Configuring Webtype ACLs, page 16-2
• Adding a Webtype ACL and ACE, page 16-2
• Editing Webtype ACLs and ACEs, page 16-4
• Deleting Webtype ACLs and ACEs, page 16-5
Task Flow for Configuring Webtype ACLs
Use the following guidelines to create and implement an ACL:
• Create an ACL by adding an ACE and applying an ACL name. See the “Using Webtype ACLs”
section on page 16-2.
• Apply the ACL to an interface. See the “Configuring Access Rules” section on page 30-7 for more
information.
Adding a Webtype ACL and ACE
You must first create the webtype ACL and then add an ACE to the ACL.
Table 16-1 Default Webtype Access List Parameters
Parameters Default
deny The adaptive security appliance denies all packets
on the originating interface unless you specifically
permit access.
log Access list logging generates system log message
106023 for denied packets. Deny packets must be
present to log denied packets.