cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
264
Views
0
Helpful
1
Replies

Object-group understanding

gdankberg
Level 1
Level 1

Referencing the Cisco document "Using and Configuring PIX Object Groups" I'm trying to understand the service configuration. In the document, the object-group "allowed_prots" is tcp and the object-group "high_ports" is tcp-udp but the access-list 103 is configured for tcp. Will this access list allow tcp and udp or just tcp? and if just tcp to correctly build this access list you will need a protocol object-group destinating tcp and udp and change the access list for the new protocol object-group?

TIA

1 Reply 1

owillins
Level 6
Level 6

Guess you are right..

The access list will allow only tcp. You would need to add another access list for udp.