e****e 发帖数: 19 | 1 many
such as
1) protocols (IP,UDP,TCP...) and ports (21,23...)
tcp+21=FTP
2) source/dest. Net/IP addresses
I guess your one rule overrides another. for a simple
example,
rule a)deny IP address 131.122.111.x
rule b)allow ftp all
a) will override b) since the default is deny |
|