Firewall CLI Commands
228
2/1553-ZAT 759 94 Uen B – December 2005
10.6 firewall
show
policy
10.6.1 Syntax
firewall show policy {ext-in|ext-dmz|dmz-int}
10.6.2 Description
This command displays information about a single policy that exists between
two Security interface types. Allow only Validator: false, means that only traffic
based on the direction and the IP address(es) specified in the
firewall add
validator
command is blocked. All other traffic is allowed.
10.6.3 Options
The following table gives the range of values for each option which can be
specified with this command and a default value (if applicable).
Option Description
Default
value
name
A name that identifies a firewall policy.
To display policy names, use the
firewall list policies
command.
N/A
10.6.4 Example
-->
firewall show policy ext-int
Firewall Policy: ext-int
Interface Type 1: external
Interface Type 2: internal
Allow Only Validator: false