<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic firewall rule validator in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/firewall-rule-validator/m-p/1803387#M529974</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Good question. Not that I know of. &lt;/P&gt;&lt;P&gt;Is this port open between this src and this dst - can be answered with a packet tracer command on the ASA platform but, what are all the tcp/udp ports that are open between the src and dest - not possible presently. May be there are 3-rd party tools that could do this but I am not aware of any.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 24 Sep 2011 02:40:33 GMT</pubDate>
    <dc:creator>Kureli Sankar</dc:creator>
    <dc:date>2011-09-24T02:40:33Z</dc:date>
    <item>
      <title>firewall rule validator</title>
      <link>https://community.cisco.com/t5/network-security/firewall-rule-validator/m-p/1803386#M529973</link>
      <description>&lt;P&gt;Ok, so I have a mix of ASA's and IOS firewalls. Constanly folks ask me " can you tell me what ports are open from x.x.x.x to x.x.x.x? I have to sift through lines of ACLs and the task becomes more complex where object groups are used. Does anyone know of a tool or script that will parse through the ACLs and tell me what is open for a given source and destination?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Doug&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:29:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firewall-rule-validator/m-p/1803386#M529973</guid>
      <dc:creator>dschaef88</dc:creator>
      <dc:date>2019-03-11T21:29:34Z</dc:date>
    </item>
    <item>
      <title>firewall rule validator</title>
      <link>https://community.cisco.com/t5/network-security/firewall-rule-validator/m-p/1803387#M529974</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Good question. Not that I know of. &lt;/P&gt;&lt;P&gt;Is this port open between this src and this dst - can be answered with a packet tracer command on the ASA platform but, what are all the tcp/udp ports that are open between the src and dest - not possible presently. May be there are 3-rd party tools that could do this but I am not aware of any.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 24 Sep 2011 02:40:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firewall-rule-validator/m-p/1803387#M529974</guid>
      <dc:creator>Kureli Sankar</dc:creator>
      <dc:date>2011-09-24T02:40:33Z</dc:date>
    </item>
    <item>
      <title>Re: firewall rule validator</title>
      <link>https://community.cisco.com/t5/network-security/firewall-rule-validator/m-p/1803388#M529975</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;i guess, you can use asdm to filter rules with Find option, you can query rulebase that &lt;STRONG&gt;contain&lt;/STRONG&gt;&amp;nbsp; source and destination IP addresses, which search and display all rules between the source and destination, this will include rules with object groups, if IP address is contained in that group&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Sony&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 24 Sep 2011 03:39:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firewall-rule-validator/m-p/1803388#M529975</guid>
      <dc:creator>sonybabu2k1</dc:creator>
      <dc:date>2011-09-24T03:39:48Z</dc:date>
    </item>
  </channel>
</rss>

