7-11
User Guide for Cisco Security Manager 4.4
OL-28826-01
Chapter 7 Managing FlexConfigs
Understanding FlexConfig Policies and Policy Objects
SYS_FW_INSPECT_OUT_NA
ME
1 Names of Inspect rules applied to Cisco IOS router
interfaces in the outbound direction. Each element of
this array has a one-to-one correspondence with the
SYS_INTERFACE_NAME_LIST variable for Cisco
IOS routers.
Configure Inspection Rules policies as values for this
variable.
This variable is optional.
SYS_FW_INTERFACE_HARD
WARE_ ID_ LIST
1 Hardware IDs for the device.
Configure Interface policies on the device to generate
values for this variable.
This variable is optional.
SYS_FW_INTERFACE_NETW
ORK_LIST
1 Interface networks on the device.
Configure Interface policies on the device to generate
values for this variable.
SYS_FW_INTERFACE_SECU
RITY_ LEVEL_LIST
1 Interface security levels on the device.
Configure Interface policies on the device to generate
values for this variable.
SYS_FW_INTERFACE_STATE
_LIST
1 Interface states on the device.
Configure Interface policies on the device to generate
values for this variable.
SYS_FW_INTERFACE_VLAN
_ID_LIST
0 VLAN IDs on the device.
Configure Interface policies on the device to generate
values for this variable.
SYS_FW_IPV6_ACL_IN_NAM
E
1 A list of all IPv6 ACLs in the In direction on the
device.
Configure IPv6 Access Rules policies in the In
direction on the device to generate values for this
variable.
SYS_FW_IPV6_ACL_OUT_N
AME
1 A list of all IPv6 ACLs in the Out direction on the
device.
Configure IPv6 Access Rules policies in the Out
direction on the device to generate values for this
variable.
Table7-2 Firewall System Variables (Continued)
Name Dimension Description