ASA5520-FTP修改端口号后的ACL配置方法

CISCO(config)# class-map ftp_traffic
CISCO(config-cmap)# match port tcp eq 38
CISCO(config-cmap)# policy-map ftp_traffic_policy
CISCO(config-pmap)# class ftp_traffic
CISCO(config-pmap-c)# inspect ftp
CISCO(config-pmap-c)# q
CISCO(config-pmap)# q
CISCO(config)# service-policy ftp_traffic_policy interface outside

CISCO(config)# access-list outsideacl extended permit tcp 124.213.193.0 255.255.255.0 host 223.181.219.8 eq 38

posted @ 2021-12-13 15:22  天海沙  阅读(102)  评论(0)    收藏  举报