Re: Zone Based firewall comment

From: Tyson Scott <tscott_at_ipexpert.com>
Date: Sat, 05 Mar 2011 20:15:44 -0500

If you fully understand MPF then ZBF is a piece of cake. They are more similar than most features between the two platforms. The big difference is that the IOS isn't pre configured for you. Do a show run all on an ASA and you will find a lot of similarities in the nesting of the policy maps etc.

I will not argue that having it on the rs exam is a waste. SDM makes configuring it cake and that is as much as an rs guy needs to know.

If you are a security guy complaining about ZBF then that is another story.

Regards,

Tyson Scott

----- Reply message -----
From: "John Wayne" <john.wayne.ccie_at_gmail.com>
Date: Sat, Mar 5, 2011 4:36 pm
Subject: Zone Based firewall comment
To: "Cisco certification" <ccielab_at_groupstudy.com>

Blogs and organic groups at http://www.ccie.net
Received on Sat Mar 05 2011 - 20:15:44 ART

This archive was generated by hypermail 2.2.0 : Fri Apr 01 2011 - 06:35:41 ART