9-9
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
Chapter9 Firew all Policy
Edit Firewall Policy/ACL
Service area buttons are disabled if the rule is read-only. A rule is read-only when
it contains syntax that Cisco SDM does not support. Read-only rules are indicted
by this icon: .
If there is an existing standard rule that filters the returning traffic flow to which
you are applying the firewall, Cisco SDM informs you that it will convert the
standard access rule to an extended rule.
Service Area Entry Fields
The following table describes the icons and other data in the Service Ar ea entries.
Field Description Icons Meaning
Action Whether the traffic will
be permitted or denied
Permit source traffic
Deny source traffic
Source/
Destination
Network or host
address, or any host or
network.
The address of a network
The address of a host
Any network or host
Service Type of service
filtered.
Examples: TCP, EIGRP, UDP,
GRE. See IP Services.
Examples: Telnet, http, FTP.
See TCP Services.
Examples: SNMP, bootpc,
RIP. See UDP Services.
Internet Group Management
Protocol (IGMP).
Examples: echo-reply,
host-unreachable. See ICMP
Message Types.
Log Whether or not denied
traffic is logged.
Log denied traffic. To
configure logging for firewalls
see Firewall Log.