Skip to content

Things I Keep Forgetting

Estimated time to read: 1 minute

  • Last Updated: May, 2024

Traffic entering/exiting the same interface

same-security-traffic permit intra-interface

The same-security-traffic intra-interface command lets traffic enter and exit the same interface, which is normally not allowed. I've used this in the following example where I have an ACI fabric with policy-based redirect to a firewall in one arm mode.

https://www.cisco.com/en/US/docs/security/asa/asa81/command/reference/s1.html

https://www.ciscolive.com/c/dam/r/ciscolive/apjc/docs/2018/pdf/BRKACI-2016.pdf

Comments