Configure an ASA Global Access Policy

Global access policies are network policies that are applied to all interfaces on an ASA. These policies are only applied to inbound network traffic. You can create a global access policy to ensure that a set of rules is applied uniformly to all the interfaces on an ASA.

Only one global access policy can be configured on an ASA. However, a global access policy can have more than one rule assigned to it, just like any other policy.

ASA Global access policies are processed after network policies for specific interfaces and before the implicit deny rule for all traffic. This is the order of rule-processing on the ASA:

  1. Interface access rules.

  2. For bridge group member interfaces, the Bridge Virtual Interface (BVI) access rule.

  3. Global access rule.

  4. Implicit deny.