_
01-Dec-2008 | 18:00:06

News:

.



Bookmark Page
Bookmark on digg Bookmark on deli.cio.us Bookmark on reddit Bookmark on Technorati Bookmark on stumbleupon Bookmark on Google Bookmark on Yahoo MyWeb

ZoomPIX Sample Firewall Report

This is an extract of a ZoomPIX report. ZoomPix is a perl script to analyse Cisco PIX firewall configuration files.

1. Interface Summary

Cisco PIX - Interfaces
# Interface IP-Address Netmask Security ACL MTU State
1.external10.5.4.244255.255.255.0 0acl_ext1500up
2.inside10.66.211.193255.255.255.224 100acl_int1500up
3.intf2127.0.0.1255.255.255.255 10 1400up
4.intf3127.0.0.1255.255.255.255 15 1400shutdown

2. Access Control List Summary

Summery (acl_ext)
ACL-Name acl_ext
ACL size 11 entries (lines)
Interface(s) external
Note The access list is applied to traffic inbound to an interface. Only packets that fit a permit-rule will be processed by the PIX.
Distinct Ports 8 permitted, 0 denied
ACL remarks

Port Summery (acl_ext)
Ports-permitted domain, echo, echo-reply, ntp, syslog, time-exceeded, unreachable, www
Ports-denied

3. Access Control List Entries

ACL Details
# Mode Proto Src-IP Dest-IP Ports Risk
1.permitudp192.168.17.149anyeq domain
2.permittcp192.168.17.149anyeq domain
3.permitudp192.168.17.14910.19.0.5eq syslog
4.permitudp192.168.17.14910.19.0.6eq syslog
5.permitudp192.168.17.14910.14.100.20eq ntp
6.permiticmpanyanyecho
7.permiticmpanyanyecho-reply
8.permiticmpanyanytime-exceeded
9.permiticmpanyanyunreachable
10.permittcp192.168.17.149192.168.219.82eq www
11.denyipanyany