I am currently using interface based ACL's and during my configuration of HSRP I had to allow my secondary routers IP to multicast to the address of 224.0.0.2 and just the same on the secondary one for the IP on the primary router. If I convert to a zone based firewall what will I have to do to allow HSRP to work properly?
Current configuration:
Primary:
IP: 192.168.1.11
VIP: 192.168.1.1
permit udp host 192.168.1.12 host 224.0.0.2 eq 1985
Standby:
IP: 192.168.1.12
VIP:192.168.1.1
permit udp host 192.168.1.11 host 224.0.0.2 eq 1985