11-08-2007 07:46 PM - edited 02-21-2020 01:46 AM
Correct me if I am wrong, the Cisco Pix by default will only allow packets from the outside to inside if there is an entry for it in it's state table.
Other than CBAC's ability to filter on the application layer via control packets, is there any other differences between CBAC and the default setup of a PIX?
Thanks.
11-12-2007 09:46 AM
PiX Firewall by design is a firewall, (security levels, nat-control, packet inspection at level 7, etc) CBAC does emulate the packet inspection that a PIX Firewall does, here is a link with pretty good information about the CBAC capabilities and the scenarios in which you may use it:
11-16-2007 08:49 AM
The link you supplied involves the router IOS based firewall functionality.
Is CBAC only allowed on router based firewalls or are they allowed on PIX's as well?
Thanks.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: