clary/clary-mdf-a8360-sw2.cfg Mon Mar 16 08:32:17 PM EDT 2026
This commit is contained in:
parent
d5c159bc76
commit
d45d4f4a17
@ -51,6 +51,12 @@ object-group ip address clearpass_servers
|
|||||||
10 10.1.40.115
|
10 10.1.40.115
|
||||||
20 10.1.40.116
|
20 10.1.40.116
|
||||||
30 10.1.40.117
|
30 10.1.40.117
|
||||||
|
object-group ip address day-enterprise-servers
|
||||||
|
10 10.1.230.11
|
||||||
|
20 10.1.40.108
|
||||||
|
object-group ip address dns-servers
|
||||||
|
10 10.1.40.10
|
||||||
|
20 10.1.48.11
|
||||||
object-group ip address dom_cont
|
object-group ip address dom_cont
|
||||||
10 10.1.40.10
|
10 10.1.40.10
|
||||||
20 10.1.40.95
|
20 10.1.40.95
|
||||||
@ -59,6 +65,9 @@ object-group ip address dom_cont
|
|||||||
50 10.1.203.21
|
50 10.1.203.21
|
||||||
60 10.1.48.10
|
60 10.1.48.10
|
||||||
70 10.21.48.10
|
70 10.21.48.10
|
||||||
|
object-group ip address ntp-servers
|
||||||
|
10 10.1.40.154
|
||||||
|
20 10.1.48.103
|
||||||
object-group ip address sccm_servers
|
object-group ip address sccm_servers
|
||||||
10 10.1.48.53
|
10 10.1.48.53
|
||||||
20 10.1.48.189
|
20 10.1.48.189
|
||||||
@ -129,6 +138,16 @@ access-list ip Image-acl
|
|||||||
158 comment ClearPass_TCP_PORTS_OUT
|
158 comment ClearPass_TCP_PORTS_OUT
|
||||||
158 permit tcp any clearpass_servers group clearpass_tcp_ports
|
158 permit tcp any clearpass_servers group clearpass_tcp_ports
|
||||||
160 deny any any any
|
160 deny any any any
|
||||||
|
access-list ip hvac-acl
|
||||||
|
10 permit any 10.8.230.0/255.255.255.224 day-enterprise-servers
|
||||||
|
20 permit udp 10.8.230.0/255.255.255.224 dns-servers eq dns
|
||||||
|
30 permit udp 10.8.230.0/255.255.255.224 ntp-servers eq ntp
|
||||||
|
40 permit icmp 10.8.230.0/255.255.255.252 10.8.230.0/255.255.255.224
|
||||||
|
50 permit icmp 10.8.230.0/255.255.255.224 10.8.230.0/255.255.255.252
|
||||||
|
60 deny any any 10.0.0.0/255.0.0.0
|
||||||
|
70 deny any any 192.168.0.0/255.255.0.0
|
||||||
|
80 deny any any 172.16.0.0/255.240.0.0
|
||||||
|
90 permit tcp 10.8.230.0/255.255.255.224 any eq 587 log count
|
||||||
access-list ip users-acl
|
access-list ip users-acl
|
||||||
10 deny any any 192.168.0.0/255.255.0.0
|
10 deny any any 192.168.0.0/255.255.0.0
|
||||||
20 permit any any any
|
20 permit any any any
|
||||||
|
|||||||
Loading…
x
Reference in New Issue
Block a user