30-7
Cisco ASA 5500 Series Configuration Guide using ASDM
OL-20339-01
Chapter 30 Configuring Access Rules
Guidelines and Limitations
Guidelines and Limitations
This section includes the guidelines and limitations for this feature.
Context Mode Guidelines
Supported in single and multiple context mode.
Firewall Mode Guidelines
Supported in routed and transparent firewall modes.
IPv6 Guidelines
Supports IPv6
Additional Guidelines and Limitations
To access the adaptive security appliance interface for management access, you do not need an access
list allowing the host IP address. You only need to configure management access by following the
instructions in Chapter 32, “Configuring Management Access.”
Default Settings
See the “Implicit Permits” section on page 30-2.
Configuring Access Rules
This section includes the following topics:
• Adding an Access Rule, page 30-7
• Adding an EtherType Rule (Transparent Mode Only), page 30-8
• Configuring Management Access Rules, page 30-10
Adding an Access Rule
To apply an access rule, perform the following steps.
Step 1 Choose Configuration > Firewall > Access Rules.
Step 2 Click Add, and choose one of the following options:
• Add Access Rule
• Add IPv6 Access Rule
The appropriate access rule dialog box appears.
Step 3 From the Interface drop-down list, choose the interface on which to apply the rule.
The management interface is for management only and cannot be used to configure an access rule.
Step 4 In the Action field, click one of the following radio buttons next to the desired action:
• Permit—Permits access if the conditions are matched.