From 73fa27ca423aad468b578e652928e1e075e10e0f Mon Sep 17 00:00:00 2001 From: John Poland Date: Mon, 16 Mar 2026 20:32:18 -0400 Subject: [PATCH] clary/clary-mdf-a8360-sw1.cfg Mon Mar 16 08:32:17 PM EDT 2026 --- configs/clary/clary-mdf-a8360-sw1.cfg | 19 +++++++++++++++++++ 1 file changed, 19 insertions(+) diff --git a/configs/clary/clary-mdf-a8360-sw1.cfg b/configs/clary/clary-mdf-a8360-sw1.cfg index 6033c1f..89df985 100755 --- a/configs/clary/clary-mdf-a8360-sw1.cfg +++ b/configs/clary/clary-mdf-a8360-sw1.cfg @@ -51,6 +51,12 @@ object-group ip address clearpass_servers 10 10.1.40.115 20 10.1.40.116 30 10.1.40.117 +object-group ip address day-enterprise-servers + 10 10.1.230.11 + 20 10.1.40.108 +object-group ip address dns-servers + 10 10.1.40.10 + 20 10.1.48.11 object-group ip address dom_cont 10 10.1.40.10 20 10.1.40.95 @@ -59,6 +65,9 @@ object-group ip address dom_cont 50 10.1.203.21 60 10.1.48.10 70 10.21.48.10 +object-group ip address ntp-servers + 10 10.1.40.154 + 20 10.1.48.103 object-group ip address sccm_servers 10 10.1.48.53 20 10.1.48.189 @@ -129,6 +138,16 @@ access-list ip Image-acl 158 comment ClearPass_TCP_PORTS_OUT 158 permit tcp any clearpass_servers group clearpass_tcp_ports 160 deny any any any +access-list ip hvac-acl + 10 permit any 10.8.230.0/255.255.255.224 day-enterprise-servers + 20 permit udp 10.8.230.0/255.255.255.224 dns-servers eq dns + 30 permit udp 10.8.230.0/255.255.255.224 ntp-servers eq ntp + 40 permit icmp 10.8.230.0/255.255.255.252 10.8.230.0/255.255.255.224 + 50 permit icmp 10.8.230.0/255.255.255.224 10.8.230.0/255.255.255.252 + 60 deny any any 10.0.0.0/255.0.0.0 + 70 deny any any 192.168.0.0/255.255.0.0 + 80 deny any any 172.16.0.0/255.240.0.0 + 90 permit tcp 10.8.230.0/255.255.255.224 any eq 587 log count access-list ip users-acl 10 deny any any 192.168.0.0/255.255.0.0 20 permit any any any