Chapter5 Create Firewall
Advanced Firewall Configuration Wizard
5-10
Cisco Router and Security Device Manager Version 2.2 Users Guide
OL-4015-08
Domain Name Server Configuration
The router must be configured with the IP address of at least one DNS server for
application security to work. Click Enable DNS-based hostname-to-address
translation, and provide the IP address of the primary DNS server. If a secondary
DNS server is available, enter its IP address in the Secondary DNS Server field.
The IP addresses that you enter will be visible in the DNS Properties window
under Additional Tasks.
Summary
This screen summarizes the firewall information. You can review the information
in this screen and use the Back button to return to screens in the wizard to make
changes.

Inside (trusted) Interface(s)

SDM lists the routers logical and physical interfaces that you designated as the
inside interfaces in this wizard session, along with their IP addresses. Underneath,
SDM describes what access and inspection rules were associated with these
interfaces. The following are examples:
Apply access rule to the inbound direction to deny spoofing traffic.
Apply access rule to the inbound direction to deny traffic sourced from
broadcast, local loopback address.
Apply access rule to the inbound direction to permit all other traffic.
Apply default inspection rule to the inbound direction of inside(trusted)
interface. (Advanced Firewall)

Outside (untrusted) Interface(s)

SDM lists the router logical and physical interfaces that you designated as outside
interfaces in this wizard session, along with their IP addresses. Underneath, SDM
describes what access and inspection rules were associated with these interfaces.
The following are examples:
Apply default inspection rule to the outbound direction. (Basic Firewall)
Turn on unicast reverse path forwarding check.