cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
260
Views
0
Helpful
2
Replies

Zone to Zone Access Lists

brad.hammond
Level 1
Level 1

Will Pix Version 7.0 include or support zone to zone acls based on the default behavior of interface priority?

Example: An access-list would be required for traffic originating from the dmz to inside, but would not be required for traffic originating from the dmz to the outside, unless required by the company's security policy?

2 Replies 2

nkhawaja
Cisco Employee
Cisco Employee

Hi,

Checked the roadmap but could not find this feature in OS7 so far. But it is definitely an interesting feature though.

Thanks

Nadeem

Nadeem,

The old conduits had similar functionality, which the access list do not provide presently.

Zone to Zone access list may also resolve some of the administrative tasks encompassed in securing the firewall such as item 6 mentioned in the Guidlines to Securing the Pix topic in the following link.

http://forums.cisco.com/eforum/servlet/NetProf?page=netprof&CommCmd=MB%3Fcmd%3Ddisplay_location%26location%3D.1dd62d29