R3721-F3210-F3171-HP High-End Firewalls Network Management Configuration Guide-6PW101

Table Of Contents
527
Figure 304 Network diagram
Configuration considerations
To meet these requirements:
Configure ACL 3101 to match TCP packets and ACL 3102 to match all packets.
Configure node 5 of the policy to send the inbound packets matching ACL 3101 to GigabitEthernet
0/2.
Configure node 10 of the policy not to process the inbound packets matching ACL 3102.
Apply the policy on GigabitEthernet 0/1.
Configuration procedure
1. Configure IP addresses for interfaces and configure security zones. (Details not shown.)
2. Define the ACLs:
# Create ACL 3101.
{ Select Firewall > ACL from the navigation tree, and then click Add. Then make the following
configurations as shown in Figure 305.
{ Enter 3101 for ACL Number.
{ Select Config for Match Order.
{ Click Apply.