Re: Reflexive AL and CBAC posted 10/17/2002
As far I remember reflexive ACLs will open holes for return traffic only
based on the protocol and port number, so applications requiring multiple
channels are not going to work.
CBAC takes care of this because you can set it up to watch out for
multichannel apps.

> Hello everyone,
> Can someone tell the main difference between the reflexive access list and
> class based access control? They seem very similar to me. The same use and
> the concept. The both filter traffic at the edge of the network. Only
> traffic that originated from the inside will pass to the outside unless
> configure otherwise. Thanks.
> Sam