Security Features

Step 15: Display firewall policies in the corp map in detail (applicable only if firewall license is enabled):

Router1# show firewall policy corp detail

Policy with Priority 1000 is enabled, Direction is inbound Action permit, Traffic is transit

Logging is disable

Source Address is 20.1.1.100-20.1.1.150, Dest Address is 10.0.1.0/24 Source Port is any, Dest Port is any, any

Schedule is disabled, Ftp-Filter is disabled Smtp-Filter is disabled, Http-Filter is disabled Rpc-Filter is disabled, Nat is disabled Max-Connections 1024, Connection-Rate is disabled Policing is disabled, Bandwidth is disabled Bytes In 0, Bytes Out 0

Policy with Priority 1022 is enabled, Direction is outbound

Action permit, Traffic is self

Logging is disable

Source Address is any, Dest Address is any

Source Port is any, Dest Port is any, any

Schedule is disabled, Ftp-Filter is disabled

Smtp-Filter is disabled, Http-Filter is disabled

Rpc-Filter is disabled, Nat is disabled

Bytes In 0, Bytes Out 0

Policy with Priority 1023 is enabled, Direction is inbound

Action permit, Traffic is self

Logging is disable

Source Address is any, Dest Address is any

Source Port is any, Dest Port is any, any

Schedule is disabled, Ftp-Filter is disabled

Smtp-Filter is disabled, Http-Filter is disabled

Rpc-Filter is disabled, Nat is disabled

Bytes In 0, Bytes Out 0

Policy with Priority 1024 is enabled, Direction is outbound

Action permit, Traffic is transit

Logging is disable

Source Address is any, Dest Address is any

Source Port is any, Dest Port is any, any

Schedule is disabled, Ftp-Filter is disabled

Smtp-Filter is disabled, Http-Filter is disabled

Rpc-Filter is disabled, Nat is disabled

Max-Connections 1024, Connection-Rate is disabled

Policing is disabled, Bandwidth is disabled

Bytes In 11258, Bytes Out 5813

June 2004

© 2004 Foundry Networks, Inc.

15 - 43

Page 268
Image 268
Foundry Networks AR3201-CL, AR3202-CL, AR1204, AR1216, AR1208 manual Security Features