TMS zl Management and Configuration Guide ST.1.1.100430

4-38
Firewall
Firewall Access Policies
If you add the new policy with priority 2 that is shown in Figure 4-19, the
connection is dropped because it is within the address space that overlaps
between the current policy and the new policy with a higher priority. When
the connection attempts to reinitiate, it is reevaluated against all of the
Internal-to-DMZ policies. Figure 4-19 shows that the connection is permitted
by Internal-to-DMZ policy 3, which used to be policy 2.
Figure 4-19. Example Firewall Access Policy Process for Adding Policies