Zone FW working but not matching protocol Class Map
My configuration is simple and testing has gone well.... I started off with a Class map that only matched on an access list. After successful testing I added a subordinate class map for protocol matching. If appears to be working but the statistics do not show what I expect.
In the attachment you will see the configuration and the output of the "show policy-map type inspect zone-pair inout session" command.
Although it is working I expected to see hits against the protocols I am inspecting. In this case a ping to an outside server should have hits against the ICMP protocol. Same thing it I do an HTTP session - it works but no hits. In reading through the documentation I have configured it correctly, but am I missing something.
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...