It would appear that RACL's were superseded by CBAC, and then CBAC was superseded by ZBF. I have experienced some inconsistency using ZBF with it breaking certain traffic flows. My qtn is what is the recommended method for protecting a split-tunneled interface from Internet?
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...