Cisco Firepower FTD ACL前面系统默认带的几条策略
SSH登录 FTD后, show run access-list之后,能看到在最前面有以下5条策略
但这5条策略在GUI界面是看不到的,
找思科TAC进行了确认, 这5条是FTD系统自带的,不是人工创建的
access-list CSM_FW_ACL_ advanced permit ipinip any any rule-id 268435456
access-list CSM_FW_ACL_ advanced permit udp any eq 3544 any range 1025 65535 rule-id 268435456
access-list CSM_FW_ACL_ advanced permit udp any range 1025 65535 any eq 3544 rule-id 268435456
access-list CSM_FW_ACL_ advanced permit 41 any any rule-id 268435456
access-list CSM_FW_ACL_ advanced permit gre any any rule-id 268435456

浙公网安备 33010602011771号