Configuring the Cisco ASA firewall

The following steps will guide you through configuring the Cisco ASA firewall:

  1. First, we are adding an access rule that will allow the WSUS server to connect to the internet (Microsoft update servers). Navigate to Access Rules within the Firewall pane:
    1. Add Permit Access Rule.
    2. Interface is IDMZ.
    3. Source is IDMZ_WSUSServer_IP.
    1. Destination is Enterprise_Subnet.
    2. Service is HTTP, HTTPS, DNS.

If you are really security conscious, you can add a URL filter that restricts access to only the following sites:

Get Industrial Cybersecurity now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.