 




<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Network technologies and trends &#187; Basic Firewall</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/network-technologies/tag/basic-firewall/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/network-technologies</link>
	<description></description>
	<lastBuildDate>Wed, 15 May 2013 18:52:38 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>How to turn a Cisco Router into ASA..</title>
		<link>http://itknowledgeexchange.techtarget.com/network-technologies/how-to-turn-a-cisco-router-into-asa/</link>
		<comments>http://itknowledgeexchange.techtarget.com/network-technologies/how-to-turn-a-cisco-router-into-asa/#comments</comments>
		<pubDate>Wed, 24 Sep 2008 18:27:50 +0000</pubDate>
		<dc:creator>Yasir Irfan</dc:creator>
				<category><![CDATA[ASA/PIX]]></category>
		<category><![CDATA[Basic Firewall]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Cisco ASA]]></category>
		<category><![CDATA[Cisco IOS]]></category>
		<category><![CDATA[Cisco IOS Firewall]]></category>
		<category><![CDATA[Routers]]></category>
		<category><![CDATA[ZFW]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/network-technologies/how-to-turn-a-cisco-router-into-asa/</guid>
		<description><![CDATA[Guess what your Routers  support zone-based policies, which really helps with multi-interface restrictions (rather than just one outside &#38; one inside interface with individual access list applications). Likewise, it now supports application inspection to catch those scandalous peer-to-peer programs.   Courtesy: Cisco Cisco IOS® Software Release 12.4(6)T introduced Zone-Based Policy Firewall (ZFW), a new configuration model [...]]]></description>
				<content:encoded><![CDATA[<p><span>Guess what your Routers  support zone-based policies, which really helps with multi-interface restrictions (rather than just one outside &amp; one inside interface with individual access list applications). Likewise, it now supports application inspection to catch those scandalous peer-to-peer programs.  </span></p>
<p><span><a href="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/zone-design-guide1.gif" title="zoneguide"><img src="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/zone-design-guide1.gif" alt="zoneguide" /></a></p>
<p></span><span>Courtesy: Cisco</p>
<p></span><span>Cisco IOS® Software Release 12.4(6)T introduced Zone-Based Policy Firewall (ZFW), a new configuration model for the Cisco IOS Firewall feature set. This new configuration model offers intuitive policies for multiple-interface routers, increased granularity of firewall policy application, and a default deny-all policy that prohibits traffic between firewall security zones until an explicit policy is applied to allow desirable traffic. For more details do access this <a href="http://www.cisco.com/en/US/products/sw/secursw/ps1018/products_tech_note09186a00808bc994.shtml">document from Cisco.</a></span></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/network-technologies/how-to-turn-a-cisco-router-into-asa/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Learn How to secure your Cisco router with Cisco’s Secure Device Manager (SMD) Firewall Policy Wizard.</title>
		<link>http://itknowledgeexchange.techtarget.com/network-technologies/learn-how-to-secure-your-cisco-router-with-cisco%e2%80%99s-secure-device-manager-smd-firewall-policy-wizard/</link>
		<comments>http://itknowledgeexchange.techtarget.com/network-technologies/learn-how-to-secure-your-cisco-router-with-cisco%e2%80%99s-secure-device-manager-smd-firewall-policy-wizard/#comments</comments>
		<pubDate>Sun, 14 Sep 2008 07:00:06 +0000</pubDate>
		<dc:creator>Yasir Irfan</dc:creator>
				<category><![CDATA[access-lists]]></category>
		<category><![CDATA[Basic Firewall]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Cisco 877W Router]]></category>
		<category><![CDATA[Cisco IOS Firewall]]></category>
		<category><![CDATA[Cisco Security Device Manager]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routers]]></category>
		<category><![CDATA[SDM]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/network-technologies/learn-how-to-secure-your-cisco-router-with-cisco%e2%80%99s-secure-device-manager-smd-firewall-policy-wizard/</guid>
		<description><![CDATA[This document describes how to use the Cisco Security Device Manager (SDM) to secure your Cisco router. The Cisco Security Device Manager (SDM) firewall policy wizard can help make things easier for the first time users who are not comfortable with the Cisco CLI commands.In this example let’s configure the basic firewall using the Cisco [...]]]></description>
				<content:encoded><![CDATA[<p><span class="content"><font face="Calibri">This document describes how to use the </font><a href="http://www.cisco.com/en/US/products/sw/secursw/ps5318/prod_installation_guide09186a00803e4727.html"><font color="#0000ff" face="Calibri">Cisco Security Device Manager (SDM)</font></a><font face="Calibri"> to secure your Cisco router. The </font><a href="http://www.cisco.com/en/US/products/sw/secursw/ps5318/prod_installation_guide09186a00803e4727.html"><font color="#0000ff" face="Calibri">Cisco Security Device Manager (SDM)</font></a><font face="Calibri"> firewall policy wizard can help make things easier for the first time users who are not comfortable with the Cisco CLI commands.</font></span><span class="content"><font face="Calibri">In this example let’s configure the basic firewall using the </font><a href="http://www.cisco.com/en/US/products/sw/secursw/ps5318/prod_installation_guide09186a00803e4727.html"><font color="#0000ff" face="Calibri">Cisco Security Device Manager (SDM)</font></a><font face="Calibri"> firewall policy wizard. For this example a Cisco 877W router with an IOS version 12.4(4)T8 <span> </span>is used with SDM version 2.5.</font></span></p>
<p class="MsoNormal"><span class="content"><font face="Calibri">Using the </font><a href="http://www.cisco.com/en/US/products/sw/secursw/ps5318/prod_installation_guide09186a00803e4727.html"><font color="#0000ff" face="Calibri">Cisco Security Device Manager (SDM)</font></a><font face="Calibri"> Firewall and ACL task section , you can create new Firewall and ACL.</font></span></p>
<p><span class="content"><font face="Calibri"><a href="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/firewall-acl.jpg" title="Firewall &amp; ACL"><img src="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/firewall-acl.jpg" alt="Firewall &amp; ACL" /></a></font></span><span class="content"><font face="Calibri"> </font></span></p>
<p><span class="content"><font face="Calibri"><span class="content">The <a href="http://www.cisco.com/en/US/products/sw/secursw/ps5318/prod_installation_guide09186a00803e4727.html"><font color="#0000ff">Cisco Security Device Manager (SDM)</font></a> offers wizard to create either a Basic Firewall or an Advance Firewall. Now you are thinking what is the difference? The Basic Firewall won’t allow you to configure a DMZ zone where as the advance firewall does. </span></font></span><span class="content"></span><span class="content"></span><span class="content"></span><span class="content"></span><span class="content"></span><span class="content"></span><span class="content"><font face="Calibri"></p>
<p class="MsoNormal"><span class="content">As we are not interested in creating a DMZ zone lets proceed with a Basic Firewall option as shown in the below figure A</span></p>
<p><span class="content"><strong>Figure A</strong></span><a href="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/basic-fw-wiza.jpg" title="basic fw"></a><a href="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/basic-fw-wiza.jpg" title="basic fw"><img src="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/basic-fw-wiza.jpg" alt="basic fw" /></a></p>
<p><font face="TimesNewRomanPSMT">Th below figure explains how the basic firewall Configuration Wizard applies its template policy to the inside and outside interfaces. The wizard will give you the opportunity to which interface is which. The new policy will inspect TCP, UDP and other protocols that travel from inside to outside zone. It will block IM, P2P, MSN, Yahoo and AOL <span> </span>IM traffic. It will also deny any unsolicited traffic coming on to the outside interface<span class="content"></span> <strong>Figure B</strong></font><font face="TimesNewRomanPSMT"><a href="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/figb.jpg" title="figureb"><img src="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/figb.jpg" alt="figureb" /></a></font></font></span><span class="content"></span><span class="content"></span><span class="content"></span><span class="content"></span><span class="content"></span><span class="content"></p>
<p class="MsoNoSpacing"><font face="Calibri">Click Next, which will take you to the basic firewall Interface Configuration screen, as seen in figure B. This is where you can select which interface will be the inside and which will be the outside.</font></p>
<p class="MsoNoSpacing"><font face="Calibri">After you have made your selection, click Next. This takes you to the Basic firewall Security Configuration screen, as shown in figure C. Choose the level of Security for the firewall: High, Medium, or Low.</font></p>
<p><font face="Calibri">I choose Medium Security and clicked the preview commands button to review the commands this settings would apply.<span class="content"></span></font><strong>Figure C</strong></p>
<p><a href="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/figc.jpg" title="Figure C"><img src="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/figc.jpg" alt="Figure C" /></a></p>
<p><span>When you see the output, you are pleased as you didn’t have to type all those commands manually</span></p>
<p><span><strong>Figure D</strong></span></p>
<p><span><a href="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/figd.jpg" title="FigD"><img src="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/figd.jpg" alt="FigD" /></a></span></p>
<p><span></span><span></span><span></span><span></p>
<p class="MsoNoSpacing"><font face="Calibri">Click Next. This takes you to the Basic Firewall Domain Name Server Configuration Screen, as shown in figure D. Specify the primary &amp; secondary DNS server, and click Next. The Firewall Configuration summary screen sums up our choices as shown in figure E. Then click Finish.</font></p>
<p class="MsoNoSpacing"><font face="Calibri"><strong>Figure E</strong></font></p>
<p class="MsoNoSpacing"><a href="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/fige.jpg" title="figuree"><img src="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/fige.jpg" alt="figuree" /></a></p>
<p class="MsoNoSpacing">After successful completion of the above mentioned steps you can always review the changes as shown in figure F by clicking Edit Firewall Policy tab</p>
<p class="MsoNoSpacing"><strong>Figure F</strong></p>
<p class="MsoNoSpacing"><a href="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/figf.jpg" title="figuref"><img width="696" src="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/58/files/2008/09/figf.jpg" alt="figuref" height="707" /></a></p>
<p></span></span></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/network-technologies/learn-how-to-secure-your-cisco-router-with-cisco%e2%80%99s-secure-device-manager-smd-firewall-policy-wizard/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
