Security Features

Step 16: Display firewall policies in the corp map in detail (applicable only if firewall license is enabled):

Router1# show firewall policy corp detail

Policy with Priority 1000 is enabled, Direction is inbound

Action permit, Traffic is transit

Logging is disable

Source Address is 10.0.2.0/24, Dest Address is 10.0.1.0/24

Source Port is any, Dest Port is any, any

Schedule is disabled, Ftp-Filter is disabled

Smtp-Filter is disabled, Http-Filter is disabled

Rpc-Filter is disabled, Nat is disabled

Max-Connections 1024, Connection-Rate is disabled

Policing is disabled, Bandwidth is disabled

Bytes In 0, Bytes Out 0

Policy with Priority 1022 is enabled, Direction is outbound

Action permit, Traffic is self

Logging is disable

Source Address is any, Dest Address is any

Source Port is any, Dest Port is any, any

Schedule is disabled, Ftp-Filter is disabled

Smtp-Filter is disabled, Http-Filter is disabled

Rpc-Filter is disabled, Nat is disabled

Bytes In 0, Bytes Out 0

Policy with Priority 1023 is enabled, Direction is inbound

Action permit, Traffic is self

Logging is disable

Source Address is any, Dest Address is any

Source Port is any, Dest Port is any, any

Schedule is disabled, Ftp-Filter is disabled

Smtp-Filter is disabled, Http-Filter is disabled

Rpc-Filter is disabled, Nat is disabled

Bytes In 0, Bytes Out 0

Policy with Priority 1024 is enabled, Direction is outbound

Action permit, Traffic is transit

Logging is disable

Source Address is any, Dest Address is any

Source Port is any, Dest Port is any, any

Schedule is disabled, Ftp-Filter is disabled

Smtp-Filter is disabled, Http-Filter is disabled

Rpc-Filter is disabled, Nat is disabled

Max-Connections 1024, Connection-Rate is disabled

Policing is disabled, Bandwidth is disabled

June 2004

© 2004 Foundry Networks, Inc.

15 - 17

Page 242
Image 242
Foundry Networks AR1216, AR3202-CL, AR3201-CL, AR1204, AR1208 manual Security Features