Basic configuration of ASA Firewall
In global mode
Asa (config) # int e0swap 0 / / enter the interface / /
Asa (config-if) # nameif name / / configuration interface name / /
Asa (config-if) # security-leve 0-100 / / configure the security level of the interface. 0-100 indicates the security level / /
Asa (config-if) # ip add 192.168.1.1 255.255.255.0 / / configure interface ip address / /
Asa (config) # access-list 100199 permit | deny ip host 192.168.1.2 host 192.168.2.2 / / allow inbound / /
Asa (config) # access-group 100199 in int outside / / apply to the interface / /
Asa (config) # route outside 172.16.1.0 255.255.255.0 172.16.2.1 / / outside indicates the interface direction, 172.168.2.1-bit one-hop address / /
Asa (config) # access-list 111permit icmp any any / / allow icmp to pass through the firewall / /
Asa (config) # access-group 111in int outside / / apply to interface / /
Asa#write erase / / Delete startup-config configuration file / /
Saving of asa Firewall configuration
Copy running-config disk0:/.private/startup-config
Boot config disk0:/.private/startup-config