Firewall configuration two of the top ten tasks address access and access list settings
Firewall Configuration Task 2
Address access and access list settings
Task 2 Topology 2.1
1. Set the internal and external interfaces. The inside network is: 192.168.17.0/24.The outside network is: 172.22.10.0/24. The security level of the internal and external interfaces is the default.
Figure 2.2
2. Set NAT exemption, internal network 172.22.10.0/24 through firewall, no NAT translation.
Figure 2.3
3. Set access control list icmp to allow ping traffic to traverse internal and external networks.
Figure 2.4
4. Set up to allow only SMTP,POP3, NNTP traffic from outside and host 192.168.17.22 traffic from inside zone.
Figure 2.5
5. Allow SQLnet and FTP packet traffic from external hosts 172.22.10.41 and 172.22.10.53 to internal host 192.168.17.100. Apply to the outside interface.
Figure 2.6
6. Set ping traffic initiated by external hosts to request packets, reply packets, timeout packets and unreachable packets that can only pass icmp.
Set external DNS traffic to communicate with internal host 192.168.17.21.
Figure 2.7
7. Communication between internal and external hosts.
Figure 2.8