C H A P T E R
8-1
Cisco Secure Router 520 Series Software Configuration Guide
OL-14210-01
8
Configuring a Simple Firewall
The Cisco Secure Router 520 Series routers support network traffic filtering by means of access lists.
The routers also support packet inspection and dynamic temporary access lists by means of
Context-Based Access Control (CBAC).
Basic traffic filtering is limited to configured access list implementations that examine packets at the
network layer or, at most, the transport layer, permitting or denying the passage of each packet through
the firewall. However, the use of inspection rules in CBAC allows the creation and use of dynamic
temporary access lists. These dynamic lists allow temporary openings in the configured access lists at
firewall interfaces. These openings are created when traffic for a specified user session exits the internal
network through the firewall. The openings allow returning traffic for the specified session (that would
normally be blocked) back through the firewall.
See the
Cisco IOS Security Configuration Guide, Release 12.3
, for more detailed information on traffic
filtering and firewalls.
Содержание 520 Series
Страница 15: ...xv Cisco Secure Router 520 Series Software Configuration Guide OL 14210 01 Preface ...
Страница 18: ...xviii Cisco Secure Router 520 Series Software Configuration Guide OL 14210 01 Preface ...
Страница 19: ...P A R T 1 Getting Started ...
Страница 20: ......
Страница 33: ...P A R T 2 Configuring Your Router for Ethernet and DSL Access ...
Страница 34: ......
Страница 103: ...P A R T 3 Configuring Additional Features and Troubleshooting ...
Страница 104: ......
Страница 123: ...P A R T 4 Reference Information ...
Страница 124: ......
Страница 142: ...B 10 Cisco Secure Router 520 Series Software Configuration Guide OL 14210 01 Appendix B Concepts Access Lists ...
Страница 162: ...Index IN 8 Cisco Secure Router 520 Series Software Configuration Guide OL 14210 01 ...