11-21-2008 08:49 AM - edited 03-11-2019 07:16 AM
Recent versions of ASDM create
"object-group network DM_INLINE_NETWORK_1"
statements automagically.
I could not find any documentation about this.
Can anybody explain what the purpose of this approach is?
11-21-2008 02:29 PM
if you search your config - you should see that it is a grouping of objects. The system creates them for you if you put more than 1 object on a rule.
For example, if your rule is src1 to dest1&2 port xx
Then you will have an object group network dm_inline_network_1 with dest1&2 in it.
if you do another rule the same way with different destinations - it will make another one for you - dm_inline_network_2 & so on.
11-22-2008 04:49 AM
It is meant to simply your configurations.
Regards
Farrukh
07-13-2011 08:40 AM
I like using the ASDM but it would be good if you could disable this feature. From experecne I have found that auditors love vague non descriptive commands in firewalls such as (DM_INLINE_NETWORK) This "feature" has forced me to abandon using the ASDM to configure our firewalls.
Message was edited by: Christopher Smith
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: