cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
610
Views
0
Helpful
2
Replies

IOS Zone-based Policy Firewall questions

ovt
Level 4
Level 4

1. Why doesn't "drop log" policy-map action send unreachables? Is this a bug or feature?

2. Why doesn't ZPF control multicasts terminated at the self zone (EIGRP, for example), so it is not possible to control which multicasts are accepted and which aren't. Is this a bug or feature?

3. Why is SMTP guard enabled by default and cannot be disabled if "match protocol smtp" is used? Is this a bug or feature?

4. Does cisco have performance metrics for ZPF compared to traditional CBAC?

IOS 12.4(15)T

Thx.

2 Replies 2

Not applicable

Refer to the zone based frewall feature page for more information

http://cisco.com/en/US/products/hw/routers/ps341/products_data_sheet0900aecd802c8530.html

juan_m_12
Level 1
Level 1

i have the same problem with the SMTP being blocked,

have you found a way to make it work??

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card