Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

PIX and object-groups.

Hi all,

when I configure PIX I can use ACL

to restrict access with normal line

and combine this line with object-group.

My question is ..if it has some other meaning not only cut down lenght of ACL?

Could someone explain me all feasibilities of object-group.

BR

jl

1 REPLY
New Member

Re: PIX and object-groups.

Object groups for usability and convinenance sake, instead of creating 10 different deny statements you could combine all the 10 in one network object and deny with 1 ACE command using object group. Internall all the access-lists using object groups are expanded to standard forms.

Use show access-list to verify the same

178
Views
0
Helpful
1
Replies
CreatePlease to create content