|
|
|
|
@ -1,6 +1,6 @@
|
|
|
|
|
<?xml version="1.0" encoding="utf-8"?>
|
|
|
|
|
<!DOCTYPE FWObjectDatabase SYSTEM "fwbuilder.dtd">
|
|
|
|
|
<FWObjectDatabase xmlns="http://www.fwbuilder.org/1.0/" version="18" lastModified="1302205048" id="root">
|
|
|
|
|
<FWObjectDatabase xmlns="http://www.fwbuilder.org/1.0/" version="18" lastModified="1302217356" id="root">
|
|
|
|
|
<Library id="syslib000" color="#d4f8ff" name="Standard" comment="Standard objects" ro="True">
|
|
|
|
|
<AnyNetwork id="sysid0" name="Any" comment="Any Network" ro="False" address="0.0.0.0" netmask="0.0.0.0"/>
|
|
|
|
|
<AnyIPService id="sysid1" protocol_num="0" name="Any" comment="Any IP Service" ro="False"/>
|
|
|
|
|
@ -432,69 +432,85 @@
|
|
|
|
|
<Library id="id0" name="User" comment="" ro="False">
|
|
|
|
|
<ObjectGroup id="id1" name="Objects" comment="" ro="False">
|
|
|
|
|
<ObjectGroup id="id2" name="Addresses" comment="" ro="False">
|
|
|
|
|
<IPv4 id="id3" name="h-10.1.1.202" comment="Created during import of line 65" ro="False" address="10.1.1.202" netmask="255.255.255.255"/>
|
|
|
|
|
<IPv4 id="id3" name="h-192.168.2.240" comment="Created during import of line 49" ro="False" address="192.168.2.240" netmask="255.255.255.255"/>
|
|
|
|
|
<IPv4 id="id4" name="h-10.1.1.202" comment="Created during import of line 78" ro="False" address="10.1.1.202" netmask="255.255.255.255"/>
|
|
|
|
|
</ObjectGroup>
|
|
|
|
|
<ObjectGroup id="id4" name="DNS Names" comment="" ro="False"/>
|
|
|
|
|
<ObjectGroup id="id5" name="Address Tables" comment="" ro="False"/>
|
|
|
|
|
<ObjectGroup id="id6" name="Groups" comment="" ro="False">
|
|
|
|
|
<ObjectGroup id="id7" name="net-1" comment="single network object-group Created during import of line 42" ro="False">
|
|
|
|
|
<ObjectRef ref="id15"/>
|
|
|
|
|
<ObjectGroup id="id5" name="DNS Names" comment="" ro="False"/>
|
|
|
|
|
<ObjectGroup id="id6" name="Address Tables" comment="" ro="False"/>
|
|
|
|
|
<ObjectGroup id="id7" name="Groups" comment="" ro="False">
|
|
|
|
|
<ObjectGroup id="id8" name="net_1_group" comment="Created during import of line 42" ro="False">
|
|
|
|
|
<ObjectRef ref="id26"/>
|
|
|
|
|
<ObjectRef ref="id27"/>
|
|
|
|
|
</ObjectGroup>
|
|
|
|
|
<ObjectGroup id="id9" name="net-2" comment="multiple network-object object s Created during import of line 45" ro="False">
|
|
|
|
|
<ObjectRef ref="id16"/>
|
|
|
|
|
<ObjectRef ref="id15"/>
|
|
|
|
|
<ObjectRef ref="id17"/>
|
|
|
|
|
<ObjectGroup id="id11" name="another_group_net_1" comment="Created during import of line 45" ro="False">
|
|
|
|
|
<ObjectRef ref="id26"/>
|
|
|
|
|
<ObjectRef ref="id28"/>
|
|
|
|
|
</ObjectGroup>
|
|
|
|
|
<ObjectGroup id="id14" name="host_net_1" comment="Created during import of line 48" ro="False">
|
|
|
|
|
<ObjectRef ref="id3"/>
|
|
|
|
|
</ObjectGroup>
|
|
|
|
|
<ObjectGroup id="id16" name="host_net_2" comment="Created during import of line 51" ro="False">
|
|
|
|
|
<ObjectRef ref="id3"/>
|
|
|
|
|
</ObjectGroup>
|
|
|
|
|
<ObjectGroup id="id18" name="net-1" comment="single network object-group Created during import of line 55" ro="False">
|
|
|
|
|
<ObjectRef ref="id27"/>
|
|
|
|
|
</ObjectGroup>
|
|
|
|
|
<ObjectGroup id="id20" name="net-2" comment="multiple network-object object s Created during import of line 58" ro="False">
|
|
|
|
|
<ObjectRef ref="id29"/>
|
|
|
|
|
<ObjectRef ref="id27"/>
|
|
|
|
|
<ObjectRef ref="id28"/>
|
|
|
|
|
</ObjectGroup>
|
|
|
|
|
</ObjectGroup>
|
|
|
|
|
<ObjectGroup id="id13" name="Hosts" comment="" ro="False"/>
|
|
|
|
|
<ObjectGroup id="id14" name="Networks" comment="" ro="False">
|
|
|
|
|
<Network id="id15" name="net-192.168.2.0/255.255.255.0" comment="Created during import of line 43" ro="False" address="192.168.2.0" netmask="255.255.255.0"/>
|
|
|
|
|
<Network id="id16" name="net-192.168.1.0/255.255.255.0" comment="Created during import of line 46" ro="False" address="192.168.1.0" netmask="255.255.255.0"/>
|
|
|
|
|
<Network id="id17" name="net-192.168.3.0/255.255.255.0" comment="Created during import of line 48" ro="False" address="192.168.3.0" netmask="255.255.255.0"/>
|
|
|
|
|
<Network id="id18" name="net-10.1.1.0/255.255.255.0" comment="Created during import of line 73" ro="False" address="10.1.1.0" netmask="255.255.255.0"/>
|
|
|
|
|
<ObjectGroup id="id24" name="Hosts" comment="" ro="False"/>
|
|
|
|
|
<ObjectGroup id="id25" name="Networks" comment="" ro="False">
|
|
|
|
|
<Network id="id26" name="net-192.168.2.240/255.255.255.240" comment="Created during import of line 43" ro="False" address="192.168.2.240" netmask="255.255.255.240"/>
|
|
|
|
|
<Network id="id27" name="net-192.168.2.0/255.255.255.0" comment="Created during import of line 44" ro="False" address="192.168.2.0" netmask="255.255.255.0"/>
|
|
|
|
|
<Network id="id28" name="net-192.168.3.0/255.255.255.0" comment="Created during import of line 47" ro="False" address="192.168.3.0" netmask="255.255.255.0"/>
|
|
|
|
|
<Network id="id29" name="net-192.168.1.0/255.255.255.0" comment="Created during import of line 59" ro="False" address="192.168.1.0" netmask="255.255.255.0"/>
|
|
|
|
|
<Network id="id30" name="net-10.1.1.0/255.255.255.0" comment="Created during import of line 86" ro="False" address="10.1.1.0" netmask="255.255.255.0"/>
|
|
|
|
|
</ObjectGroup>
|
|
|
|
|
<ObjectGroup id="id19" name="Address Ranges" comment="" ro="False"/>
|
|
|
|
|
<ObjectGroup id="id31" name="Address Ranges" comment="" ro="False"/>
|
|
|
|
|
</ObjectGroup>
|
|
|
|
|
<ServiceGroup id="id20" name="Services" comment="" ro="False">
|
|
|
|
|
<ServiceGroup id="id21" name="Groups" comment="" ro="False"/>
|
|
|
|
|
<ServiceGroup id="id22" name="ICMP" comment="" ro="False">
|
|
|
|
|
<ICMPService id="id23" code="-1" type="8" name="icmp 8/-1" comment="Created during import of line 59" ro="False"/>
|
|
|
|
|
<ICMPService id="id24" code="0" type="111" name="icmp 111/0" comment="Created during import of line 60" ro="False"/>
|
|
|
|
|
<ICMPService id="id25" code="0" type="11" name="icmp 11/0" comment="Created during import of line 61" ro="False"/>
|
|
|
|
|
<ICMPService id="id26" code="0" type="0" name="icmp 0/0" comment="Created during import of line 62" ro="False"/>
|
|
|
|
|
<ICMPService id="id27" code="-1" type="3" name="icmp 3/-1" comment="Created during import of line 63" ro="False"/>
|
|
|
|
|
<ICMPService id="id28" code="-1" type="-1" name="icmp -1/-1" comment="Created during import of line 64" ro="False"/>
|
|
|
|
|
<ServiceGroup id="id32" name="Services" comment="" ro="False">
|
|
|
|
|
<ServiceGroup id="id33" name="Groups" comment="" ro="False"/>
|
|
|
|
|
<ServiceGroup id="id34" name="ICMP" comment="" ro="False">
|
|
|
|
|
<ICMPService id="id35" code="-1" type="8" name="icmp 8/-1" comment="Created during import of line 72" ro="False"/>
|
|
|
|
|
<ICMPService id="id36" code="0" type="111" name="icmp 111/0" comment="Created during import of line 73" ro="False"/>
|
|
|
|
|
<ICMPService id="id37" code="0" type="11" name="icmp 11/0" comment="Created during import of line 74" ro="False"/>
|
|
|
|
|
<ICMPService id="id38" code="0" type="0" name="icmp 0/0" comment="Created during import of line 75" ro="False"/>
|
|
|
|
|
<ICMPService id="id39" code="-1" type="3" name="icmp 3/-1" comment="Created during import of line 76" ro="False"/>
|
|
|
|
|
<ICMPService id="id40" code="-1" type="-1" name="icmp -1/-1" comment="Created during import of line 77" ro="False"/>
|
|
|
|
|
</ServiceGroup>
|
|
|
|
|
<ServiceGroup id="id29" name="IP" comment="" ro="False">
|
|
|
|
|
<IPService id="id30" any_opt="False" dscp="" fragm="False" lsrr="False" protocol_num="0" rr="False" rtralt="False" rtralt_value="False" short_fragm="False" ssrr="False" tos="" ts="False" name="ip" comment="Created during import of line 50" ro="False"/>
|
|
|
|
|
<ServiceGroup id="id41" name="IP" comment="" ro="False">
|
|
|
|
|
<IPService id="id42" any_opt="False" dscp="" fragm="False" lsrr="False" protocol_num="0" rr="False" rtralt="False" rtralt_value="False" short_fragm="False" ssrr="False" tos="" ts="False" name="ip" comment="Created during import of line 63" ro="False"/>
|
|
|
|
|
</ServiceGroup>
|
|
|
|
|
<ServiceGroup id="id31" name="TCP" comment="" ro="False">
|
|
|
|
|
<TCPService id="id32" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="tcp 0:0 / 23:23" comment="Created during import of line 86" ro="False" src_range_start="0" src_range_end="0" dst_range_start="23" dst_range_end="23"/>
|
|
|
|
|
<TCPService id="id33" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="tcp 0:0 / 22:22" comment="Created during import of line 88" ro="False" src_range_start="0" src_range_end="0" dst_range_start="22" dst_range_end="22"/>
|
|
|
|
|
<ServiceGroup id="id43" name="TCP" comment="" ro="False">
|
|
|
|
|
<TCPService id="id44" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="tcp 0:0 / 23:23" comment="Created during import of line 99" ro="False" src_range_start="0" src_range_end="0" dst_range_start="23" dst_range_end="23"/>
|
|
|
|
|
<TCPService id="id45" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="tcp 0:0 / 22:22" comment="Created during import of line 101" ro="False" src_range_start="0" src_range_end="0" dst_range_start="22" dst_range_end="22"/>
|
|
|
|
|
</ServiceGroup>
|
|
|
|
|
<ServiceGroup id="id34" name="UDP" comment="" ro="False"/>
|
|
|
|
|
<ServiceGroup id="id35" name="Users" comment="" ro="False"/>
|
|
|
|
|
<ServiceGroup id="id36" name="Custom" comment="" ro="False"/>
|
|
|
|
|
<ServiceGroup id="id37" name="TagServices" comment="" ro="False"/>
|
|
|
|
|
<ServiceGroup id="id46" name="UDP" comment="" ro="False"/>
|
|
|
|
|
<ServiceGroup id="id47" name="Users" comment="" ro="False"/>
|
|
|
|
|
<ServiceGroup id="id48" name="Custom" comment="" ro="False"/>
|
|
|
|
|
<ServiceGroup id="id49" name="TagServices" comment="" ro="False"/>
|
|
|
|
|
</ServiceGroup>
|
|
|
|
|
<ObjectGroup id="id38" name="Firewalls" comment="" ro="False">
|
|
|
|
|
<Firewall id="id39" host_OS="pix_os" lastCompiled="0" lastInstalled="0" lastModified="0" platform="pix" version="8.0" name="pixfirewall" comment="Created during import of line 5" ro="False">
|
|
|
|
|
<NAT id="id271" name="NAT" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="True">
|
|
|
|
|
<ObjectGroup id="id50" name="Firewalls" comment="" ro="False">
|
|
|
|
|
<Firewall id="id51" host_OS="pix_os" lastCompiled="0" lastInstalled="0" lastModified="0" platform="pix" version="8.0" name="pixfirewall" comment="Created during import of line 5" ro="False">
|
|
|
|
|
<NAT id="id283" name="NAT" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="True">
|
|
|
|
|
<RuleSetOptions/>
|
|
|
|
|
</NAT>
|
|
|
|
|
<Policy id="id41" name="Policy" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="True">
|
|
|
|
|
<PolicyRule id="id43" disabled="False" group="" log="False" position="0" action="Accept" direction="Inbound" comment="Imported from telnet_commands_inside Created during import of line 86">
|
|
|
|
|
<Policy id="id53" name="Policy" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="True">
|
|
|
|
|
<PolicyRule id="id55" disabled="False" group="" log="False" position="0" action="Accept" direction="Inbound" comment="Imported from telnet_commands_inside Created during import of line 99">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="id15"/>
|
|
|
|
|
<ObjectRef ref="id27"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id32"/>
|
|
|
|
|
<ServiceRef ref="id44"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -503,18 +519,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id55" disabled="False" group="" log="False" position="1" action="Accept" direction="Inbound" comment="Imported from ssh_commands_inside Created during import of line 88">
|
|
|
|
|
<PolicyRule id="id67" disabled="False" group="" log="False" position="1" action="Accept" direction="Inbound" comment="Imported from ssh_commands_inside Created during import of line 101">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="id15"/>
|
|
|
|
|
<ObjectRef ref="id27"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id33"/>
|
|
|
|
|
<ServiceRef ref="id45"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -523,18 +539,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id67" disabled="False" group="" log="False" position="2" action="Accept" direction="Inbound" comment="Imported from icmp_commands_outside Created during import of line 59">
|
|
|
|
|
<PolicyRule id="id79" disabled="False" group="" log="False" position="2" action="Accept" direction="Inbound" comment="Imported from icmp_commands_outside Created during import of line 72">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id23"/>
|
|
|
|
|
<ServiceRef ref="id35"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id278"/>
|
|
|
|
|
<ObjectRef ref="id290"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -543,18 +559,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id79" disabled="False" group="" log="False" position="3" action="Accept" direction="Inbound" comment="Imported from icmp_commands_outside Created during import of line 60">
|
|
|
|
|
<PolicyRule id="id91" disabled="False" group="" log="False" position="3" action="Accept" direction="Inbound" comment="Imported from icmp_commands_outside Created during import of line 73">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id24"/>
|
|
|
|
|
<ServiceRef ref="id36"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id278"/>
|
|
|
|
|
<ObjectRef ref="id290"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -563,18 +579,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id91" disabled="False" group="" log="False" position="4" action="Accept" direction="Inbound" comment="Imported from icmp_commands_outside Created during import of line 61">
|
|
|
|
|
<PolicyRule id="id103" disabled="False" group="" log="False" position="4" action="Accept" direction="Inbound" comment="Imported from icmp_commands_outside Created during import of line 74">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id25"/>
|
|
|
|
|
<ServiceRef ref="id37"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id278"/>
|
|
|
|
|
<ObjectRef ref="id290"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -583,18 +599,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id103" disabled="False" group="" log="False" position="5" action="Accept" direction="Inbound" comment="Imported from icmp_commands_outside Created during import of line 62">
|
|
|
|
|
<PolicyRule id="id115" disabled="False" group="" log="False" position="5" action="Accept" direction="Inbound" comment="Imported from icmp_commands_outside Created during import of line 75">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id26"/>
|
|
|
|
|
<ServiceRef ref="id38"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id278"/>
|
|
|
|
|
<ObjectRef ref="id290"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -603,18 +619,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id115" disabled="False" group="" log="False" position="6" action="Accept" direction="Inbound" comment="Imported from icmp_commands_outside Created during import of line 63">
|
|
|
|
|
<PolicyRule id="id127" disabled="False" group="" log="False" position="6" action="Accept" direction="Inbound" comment="Imported from icmp_commands_outside Created during import of line 76">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id27"/>
|
|
|
|
|
<ServiceRef ref="id39"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id278"/>
|
|
|
|
|
<ObjectRef ref="id290"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -623,18 +639,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id127" disabled="False" group="" log="False" position="7" action="Accept" direction="Inbound" comment="Imported from icmp_commands_outside Created during import of line 64">
|
|
|
|
|
<PolicyRule id="id139" disabled="False" group="" log="False" position="7" action="Accept" direction="Inbound" comment="Imported from icmp_commands_outside Created during import of line 77">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id28"/>
|
|
|
|
|
<ServiceRef ref="id40"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id278"/>
|
|
|
|
|
<ObjectRef ref="id290"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -643,18 +659,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id139" disabled="False" group="" log="False" position="8" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 65">
|
|
|
|
|
<PolicyRule id="id151" disabled="False" group="" log="False" position="8" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 78">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="id3"/>
|
|
|
|
|
<ObjectRef ref="id4"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id25"/>
|
|
|
|
|
<ServiceRef ref="id37"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -663,18 +679,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id151" disabled="False" group="" log="False" position="9" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 66">
|
|
|
|
|
<PolicyRule id="id163" disabled="False" group="" log="False" position="9" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 79">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="id3"/>
|
|
|
|
|
<ObjectRef ref="id4"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id26"/>
|
|
|
|
|
<ServiceRef ref="id38"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -683,18 +699,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id163" disabled="False" group="" log="False" position="10" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 67">
|
|
|
|
|
<PolicyRule id="id175" disabled="False" group="" log="False" position="10" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 80">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="id3"/>
|
|
|
|
|
<ObjectRef ref="id4"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id27"/>
|
|
|
|
|
<ServiceRef ref="id39"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -703,18 +719,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id175" disabled="False" group="" log="False" position="11" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 68">
|
|
|
|
|
<PolicyRule id="id187" disabled="False" group="" log="False" position="11" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 81">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id23"/>
|
|
|
|
|
<ServiceRef ref="id35"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -723,18 +739,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id187" disabled="False" group="" log="False" position="12" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 69">
|
|
|
|
|
<PolicyRule id="id199" disabled="False" group="" log="False" position="12" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 82">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id25"/>
|
|
|
|
|
<ServiceRef ref="id37"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -743,18 +759,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id199" disabled="False" group="" log="False" position="13" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 70">
|
|
|
|
|
<PolicyRule id="id211" disabled="False" group="" log="False" position="13" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 83">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id26"/>
|
|
|
|
|
<ServiceRef ref="id38"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -763,18 +779,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id211" disabled="False" group="" log="False" position="14" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 71">
|
|
|
|
|
<PolicyRule id="id223" disabled="False" group="" log="False" position="14" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 84">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id27"/>
|
|
|
|
|
<ServiceRef ref="id39"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -783,18 +799,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id223" disabled="False" group="" log="False" position="15" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 72">
|
|
|
|
|
<PolicyRule id="id235" disabled="False" group="" log="False" position="15" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 85">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id28"/>
|
|
|
|
|
<ServiceRef ref="id40"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -803,18 +819,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id235" disabled="False" group="" log="False" position="16" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 73">
|
|
|
|
|
<PolicyRule id="id247" disabled="False" group="" log="False" position="16" action="Accept" direction="Inbound" comment="Imported from icmp_commands_inside Created during import of line 86">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="id18"/>
|
|
|
|
|
<ObjectRef ref="id30"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="id39"/>
|
|
|
|
|
<ObjectRef ref="id51"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id28"/>
|
|
|
|
|
<ServiceRef ref="id40"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -823,18 +839,18 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id247" disabled="False" group="" log="False" position="17" action="Accept" direction="Inbound" comment="Imported from inside_in Created during import of line 50">
|
|
|
|
|
<PolicyRule id="id259" disabled="False" group="" log="False" position="17" action="Accept" direction="Inbound" comment="Imported from inside_in Created during import of line 63">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="id15"/>
|
|
|
|
|
<ObjectRef ref="id27"/>
|
|
|
|
|
</Src>
|
|
|
|
|
<Dst neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id30"/>
|
|
|
|
|
<ServiceRef ref="id42"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -843,7 +859,7 @@
|
|
|
|
|
<Option name="stateless">False</Option>
|
|
|
|
|
</PolicyRuleOptions>
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<PolicyRule id="id259" disabled="False" group="" log="True" position="18" action="Deny" direction="Inbound" comment="Imported from inside_in Created during import of line 51">
|
|
|
|
|
<PolicyRule id="id271" disabled="False" group="" log="True" position="18" action="Deny" direction="Inbound" comment="Imported from inside_in Created during import of line 64">
|
|
|
|
|
<Src neg="False">
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Src>
|
|
|
|
|
@ -851,10 +867,10 @@
|
|
|
|
|
<ObjectRef ref="sysid0"/>
|
|
|
|
|
</Dst>
|
|
|
|
|
<Srv neg="False">
|
|
|
|
|
<ServiceRef ref="id30"/>
|
|
|
|
|
<ServiceRef ref="id42"/>
|
|
|
|
|
</Srv>
|
|
|
|
|
<Itf neg="False">
|
|
|
|
|
<ObjectRef ref="id275"/>
|
|
|
|
|
<ObjectRef ref="id287"/>
|
|
|
|
|
</Itf>
|
|
|
|
|
<When neg="False">
|
|
|
|
|
<IntervalRef ref="sysid2"/>
|
|
|
|
|
@ -866,15 +882,15 @@
|
|
|
|
|
</PolicyRule>
|
|
|
|
|
<RuleSetOptions/>
|
|
|
|
|
</Policy>
|
|
|
|
|
<Routing id="id273" name="Routing" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="True">
|
|
|
|
|
<Routing id="id285" name="Routing" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="True">
|
|
|
|
|
<RuleSetOptions/>
|
|
|
|
|
</Routing>
|
|
|
|
|
<Interface id="id275" dedicated_failover="False" dyn="False" label="inside" security_level="100" unnum="False" unprotected="False" name="Ethernet0" comment="Created during import of line 11" ro="False">
|
|
|
|
|
<IPv4 id="id276" name="pixfirewall:Ethernet0:ip" comment="Created during import of line 13" ro="False" address="192.168.2.221" netmask="255.255.255.0"/>
|
|
|
|
|
<Interface id="id287" dedicated_failover="False" dyn="False" label="inside" security_level="100" unnum="False" unprotected="False" name="Ethernet0" comment="Created during import of line 12" ro="False">
|
|
|
|
|
<IPv4 id="id288" name="pixfirewall:Ethernet0:ip" comment="Created during import of line 14" ro="False" address="192.168.2.221" netmask="255.255.255.0"/>
|
|
|
|
|
<InterfaceOptions/>
|
|
|
|
|
</Interface>
|
|
|
|
|
<Interface id="id278" dedicated_failover="False" dyn="False" label="outside" security_level="0" unnum="False" unprotected="False" name="Ethernet1" comment="Created during import of line 16" ro="False">
|
|
|
|
|
<IPv4 id="id279" name="pixfirewall:Ethernet1:ip" comment="Created during import of line 18" ro="False" address="192.0.2.221" netmask="255.255.255.0"/>
|
|
|
|
|
<Interface id="id290" dedicated_failover="False" dyn="False" label="outside" security_level="0" unnum="False" unprotected="False" name="Ethernet1" comment="Created during import of line 17" ro="False">
|
|
|
|
|
<IPv4 id="id291" name="pixfirewall:Ethernet1:ip" comment="Created during import of line 19" ro="False" address="192.0.2.221" netmask="255.255.255.0"/>
|
|
|
|
|
<InterfaceOptions/>
|
|
|
|
|
</Interface>
|
|
|
|
|
<FirewallOptions>
|
|
|
|
|
@ -895,7 +911,7 @@
|
|
|
|
|
</FirewallOptions>
|
|
|
|
|
</Firewall>
|
|
|
|
|
</ObjectGroup>
|
|
|
|
|
<ObjectGroup id="id281" name="Clusters" comment="" ro="False"/>
|
|
|
|
|
<IntervalGroup id="id282" name="Time" comment="" ro="False"/>
|
|
|
|
|
<ObjectGroup id="id293" name="Clusters" comment="" ro="False"/>
|
|
|
|
|
<IntervalGroup id="id294" name="Time" comment="" ro="False"/>
|
|
|
|
|
</Library>
|
|
|
|
|
</FWObjectDatabase>
|
|
|
|
|
|