cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
360
Views
0
Helpful
2
Replies

PIX Standard Stateful Operation Versus CBAC?

lrm001c474
Level 1
Level 1

Correct me if I am wrong, the Cisco Pix by default will only allow packets from the outside to inside if there is an entry for it in it's state table.

Other than CBAC's ability to filter on the application layer via control packets, is there any other differences between CBAC and the default setup of a PIX?

Thanks.

2 Replies 2

msosabar
Level 1
Level 1

PiX Firewall by design is a firewall, (security levels, nat-control, packet inspection at level 7, etc) CBAC does emulate the packet inspection that a PIX Firewall does, here is a link with pretty good information about the CBAC capabilities and the scenarios in which you may use it:

http://www.cisco.com/en/US/products/ps6350/products_configuration_guide_chapter09186a00804a41c5.html#wp1000932

The link you supplied involves the router IOS based firewall functionality.

Is CBAC only allowed on router based firewalls or are they allowed on PIX's as well?

Thanks.

Review Cisco Networking products for a $25 gift card