9-3
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
Chapter9 Firew all Policy
Edit Firewall Policy/ACL
Choose a Traffic Flow
Traffic flow refers to traffic that enters the router on a specified interface (the from
interface) and exits the router on a specified interface (the to interface). The Cisco
SDM traffic-flow display controls are located in a row at the top of the Edit
Firewall Policy/ACL window.
Note There must be a least two configured interfaces on the router. If there is only one,
Cisco SDM will display a message telling you to configure an additional
interface.
The following table defines the Cisco SDM traffic-flow display controls.
From Choose the interface from which the traffic flow you are interested in
originates. The firewall will protect the network connected to the
From interface. The From drop-down list contains only interfaces
with configured IP addresses.
To Choose the interface out of which the traffic will leave the router. The
To drop-down list contains only interfaces with configured IP
addresses.
Details button. Click to view details about the interface. Details such
as IP address, encapsulation type, associated IPSec policy, and
authentication type are provided.
Go
button
Click to update the traffic-flow diagram with information about the
interfaces you have chosen. The diagram is not updated until you click
Go. The Go button is disabled if you have not chosen a From interface
or a To interface, or if the From and To interfaces are the same.
View
Option
Choose Swap From and To interface to swap the interfaces that you
originally chose in the From and To drop-down lists. You can use the
swap option if you want to create a firewall protecting both the
network connected to the From interface and the network connected
to the To interface. You can choose View all Access control lists in
traffic flow when one access rule has been applied to the From
interface and another access rule has been applied to the To interface
for a traffic direction you have chosen. The entries of both access rules
are displayed in another window.