[nsp] RE: IOS Firewall Issues

Stephen Gill gillsr at yahoo.com
Tue Apr 8 14:50:40 EDT 2003


Hi Dan,

] i.e. does anyone have a link to a sample config?  

Here's one of many:

http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/
fsecur_c/ftrafwl/scfcbac.htm

] Am I correct in assuming it *does* stateful?

Yes.

] How would I view the state tables?

show ip inspect session

] How would I determine what traffic is allowed inbound??

See URL above.  Use a combination of ACLs + CBAC (ip inspect rules).

] How, exactly, would I set rules on what would be allowed inbound?

See URL above.

Cheers,
-- steve



More information about the cisco-nsp mailing list