Is there a way to group TCP and UDP services?

Hello

We are doing a migration of some firewalls Checkpoint to PIX 7.x. The ASDM has evolved enormously since PDM on 6.x, and I'm starting to think it might be useful to use, compared to the CLI.

But one thing that we noticed: Checkpoint has a handy feature that allows the creation of 'service groups' which can have all TCP and UDP services.

This makes it easy to read Checkpoint modules. On the PIX now, where his was necessary to have the udp and tcp protocols allowed to a destination, I had to create 2 separate acl for udp, TCP.

Anyone know of a way to unite the tcp and udp together in a group? I feel that the answer is no, as long as it is not possible in the CLI and the ASDM is, in my opinion, just a 'display' CLI.

TIA-

Gary

Hello.. of course, you can use the object group service command (I don't remember h: to do from the graphical interface as I don't have it in front of me right now). You c a group of udp ports, tcp or tcp and udp ports so very similar to the way in which you can do control point.

object-group

To define groups of objects that you can use to optimize your configuration, use the object-group command

in global configuration mode. No form of this command to delete groups of objects of the

Configuration. This command supports IPv4 and IPv6 addresses.

object-group {Protocol: network: icmp type} obj_grp_id

No object-group {Protocol: network: icmp type} obj_grp_id

object-group service obj_grp_id {tcp | udp: tcp - udp}

I hope that helps... Rate if he does!

Tags: Cisco Security

Similar Questions

  • Is there a way to group windows so that clicking on a button, they all appear?

    I have a setup where I have three Windows Open (a half on-screen OneNote window and two Windows Word quarter screen).  I usually need to all be open at the same time, but I find myself constantly spend away from internet or walkmans or similar browsers and then have to set all the three buttons on the taskbar.  Is there a way to group them all together, so that by clicking on one of their buttons on the taskbar, they all forward?  I guess I asking for a version of Windows, several computers desktop Mac, but with a button on the taskbar.  Did something like that exist?

    Hi Mysteryg45,

    I understand that your question is clearly that you want three or more different windows open at the same time click on an icon (see the desktop).

    To do this you must resize the windows according to your use (for example: a half on-screen OneNote window and two Windows Word quarter screen), then click on the view the destop icon.

    The Show Desktop button is a rectangular bar at the end of the task bar, like a bookend on the Start button. Aero Peek will instantly reduce your open windows with the Show Desktop button.

    It will not be possible unless these windows is been active and recently used.

    You can also view the Microsoft article for more information:

    Show, hide, or resize desktop icons

    http://Windows.Microsoft.com/en-us/Windows-Vista/show-hide-or-resize-desktop-icons

    Hope this information helps.

  • is there a way to incorporate before and after transfers in a slide show

    is there a way to incorporate before and after transfers in a slide show

    You can apply the opacity of images according to the States that would make same with after and before effect.

    Thank you

    Sanjit

  • Windows 7 64 - bit open TCP and UDP ports

    Well im clearly online but when I open original (battlefield 3) that it says im offline, so I spoke with the original technology and they gave me 2 hours of bs to do and then he said that I had to open the ports and they sent me a link for 32 bit windows (https://help.ea.com/article/opening-tcp-or-udp-ports-for-connection-issues.) I told them I did not 'my network places' and they didn't know why... I told them it was 64-bit another 5 - 6 times and they kept on trying to make me do the 32-bit installation. idk why. but in any case, I searched google and could not find an answer that is not covered in random bs or my 64-bit windows did not have this which is suppose to be on the list.

    Step 3 is not there? I got a list or change the settings of the licensed features... He didn't add the port!

    for example

    Method 2: Configure your system to allow access to the game servers. The firewall or the router must allow unrestricted communication on TCP and UDP Port number 3724. World of Warcraft (WoW) game client uses TCP whereas Voice Chat features use UDP. To open a port in Windows Firewall:

    1. open the Windows Firewall by clicking Start , clicking Control Panel, clicking Security, and then clicking on Windows Firewall.

    2. click allow a program through Windows Firewall.  If you are prompted for an administrator password or a confirmation, type the password or provide confirmation.

    3. click on the port of Add. {THIS ISN'T ON MY PC}

    4. in the name box, type a name that will help you remember what the port is used.

    5. in the Port number box, type the port number IE 3724

    6. click on TCP or UDP, depending on the Protocol.

    7. to change the scope of the port, click Change scope, and then click the option that you want to use. ("Scope" refers to the set of computers that can use this port opening).

    So im hoping you guys can link me to a up to this way to change the ports that will be on my windows 7 64 bit

    Hi Fostard,

    If I understand well you face any problem with not able to connect to the internet.

    I understand that it must be frustrating, but don't worry, we are here to help solve the problem and guide you in the right direction.

    You can go through the steps from the link and check if it helps.

    Hope this information was helpful and let us know if you need more assistance. We will be happy to help you.

  • Location bar history shows my most visited websites in a small box with a scroll bar, is there a way to expand this and make it longer (with no scroll bar)

    For a long time my address bar is backwards, the triangle button (I guess it's called the location bar history or something) always showed my most visited Web sites in a big box with all my sites. Now it always does the same thing but the window its shorter and has now a scroll bar on it, is there a way to restore or change this option to how I got it?

    Normally, you should see approximately 12 items in the drop-down list.
    This is defined via the pref browser.urlbar.maxRichResults you can review and edit the topic: config page.
    If you see a lot less you could have an extension or a theme problem.

    Start Firefox in Safe Mode to check if one of the extensions (Firefox, Tools/menu key > Modules > Extensions) or if hardware acceleration is the cause of the problem.

    • Put yourself in the DEFAULT theme: Firefox, Tools/menu key > Modules > appearance
    • Do NOT click on the reset button on the startup window Mode safe
  • is - there a way to fix sound (and read) directly from 3d?

    Hi all

    I want to know if there is a way to attach sound and play them directly from 3D, as background image for insteance?

    See an example > >here< <

    found:

    doc level:

    RM = getAnnotsRichMedia (this.pageNum) [0]; sound

    JS 3d level:

    Host.RM.Activated = true;
    host.rm.callAS ("multimedia_play");
  • Difference between IPSec over TCP and UDP IPsecover

    Hello world

    I'm testing the VPN to the user's PC.

    When I test the PC of the user using IPsecoverTCP it uses protocol 10000.

    When I check on ASA - ASDM under connection details

    ike1 - UDP Destination Port 500

    IPsecOverTCP TCP Dst Port 10000

    using Ipsecover UDP

    IKEv1 - Destination UDP 500 Port

    IPsecOverUDP - Port of Destination UDP Tunnel 10000

    Therefore when using TCP or UDP uses the same port 500 and 10000.

    Is need to know what is the major difference between these two connections just TCP or UDP?

    Concerning

    MAhesh

    IPSec over TCP is used in scenarios where:

    1 UDP port 500 is blocked, resulting in incomplete IKE negotiations

    2 ESP is not allowed to cross and encrypted traffic thus do not cross.

    3. network administrator prefers to use a connection oriented protocol.

    4. IPSec over TCP may be necessary when the intermediate NAT or PAT device is stateful firewall.

    As there are IPSec over UDP with IPSec over TCP, there is no room for negotiation. IPSec on the TCP packets are encapsulated from the beginning of the cycle of implementation of the tunnel. This feature is available only for remote access VPN not for tunnel L2L. Also does not work with proxy firewall.

    While IPSec via UDP, similar to NAT - T, is used to encapsulate ESP packets using a UDP wrapper. Useful in scenarios where the VPN clients don't support NAT - T and are behind a firewall that does not allow the ESP packets to pass through. IN IPSec over UDP, the IKE negotiations has always use port UDP 500.

  • A way to group controls and indicators on the Front Panel and that they can be made Visible or not as a group?

    I would like to combine several orders and LEDs on the front panel in a group in a way that allows me to do the whole group Visible or not.

    I tried to use a Cluster, but it has a side effect that all elements must be inside the controls or indicators, but not mixed.

    Is there any graphic element, like a panel that can contain other controls and indicators on the inside and make them Visible or not as a group regardless of whether they are commands or the LEDs?

    Good suggestions on how to do this?

    Thank you.

    The tab control is still not my favorite, appearance but it's a way fast and effective to show and hide groups of controls and indicators.

  • Is there a way to use QDateTime and QDate with DateTimePicker in QML/Javascript function?

    I use a DateTimePicker control to get the date/day of the week, etc., chosen by the user. Is there a right-postponed way to do this without using C++?

    Sorry, I forgot to attach the code :-)

    var dateSelected = datePicker.value;
    console.log("dateSelected=" + dateSelected);
    var daywwek = dateSelected.getDay();
    console.log("dayWeek=" + daywwek);
    
  • Is there a way to group label clips?

    that is, if I wanted a group of clips Tape 2

    But you can't appoint information like that? It's just the label colors?

  • Is there a way to close Firefox 4 and save tabs as there was in earlier versions?

    Previous versions of Firefox, when you went to close the window, she appeared on a window with options. I think they were saving tablets, Close Tabs and cancel. The new version, Firefox 4, is no longer allows you to save your tabs. Is there another way to close Firefox and save the tabs?

    Yes, Firefox 4 will now always save your tabs, and you can restore the next time by selecting "Restore previous Session" in the history menu, or press the big restore button on the default Firefox homepage.

    If you want Firefox to ask to save tabs when you exit (as in previous versions), you can do that by typing ' subject: config "in the address bar and change some settings: http://blog.zpao.com/post/3174360617/about-that-quit-dialog

  • WebWorks and analytical Services

    Is there a way to get the job of service Analytics of burst in WebWorks app? I don't know what I'm going to lose on creating a Web application in the management console Flurry.

    In fact, Flurry * just * launched a SDK MobileWeb (yesterday), then you can now use their analytical services in a WebWorks app:

    http://support.flurry.com/index.php?title=Analytics/FAQ/MobileWeb

  • Is there a way to get the list of hosts and its groups of belonging to the vCenter folder level in 5.5 web vsphere client plugin development?

    Hello

    I need to get the list of all hosts and its groups of belonging to the vcenter folder level.

    1. I created a view giving the extension point: vsphere.core.folder.monitorViews.

    2. After this step, I wrote the constraint as in my class of mediator,

    var ListConstraint:Constraint =

    QuerySpecUtil.createConstraintForRelationship ( _contextObject, 'childEntity');

    I was expecting a list of all child entities such as hosts, dc, cluster... But I have only the immediate child object which is only the Datacenter as my result.

    Is it possible to get all hosts and vCenter folder level Clusters because I need the entire list to vCenter (highest level).

    Other info:

    Object file has only two properties:

    1 childEntity - list of entities

    2 childType in-kind folder ('Virtual Machine', 'Data center'...)

    Is it possible to write a constraint specifying which list of childEntities I need using childType in.

    Example: Make Me childEntities that has a 'Host' and 'Cluster' childType but childType in doesn't have these two types.

    In addition, at this level, I could see the 'Associated objects' tab which has all the information I need, such as Clusters and Cluster tab hosts and host tab respectively.

    So, I think its possible to get this list to vCenter folder level.

    I have attached a screenshot representing the need. Kindly ignore the Conventions of naming in there since I edited the example comes with the sdk program.


    Query:

    1. How can I get the host and Cluster (table of relationship) list to vCenter folder level or even at the level of the vise.global.view?

    2. once I get this list, is it possible for me to manipulate that list and send the new list to IU?

    3. is there another way to do the same thing without the help of model classes and mediator?


    Pointers to this will be very useful.

    It is not possible to obtain all hosts a folder specific vCenter from a single query Data Manager.  You need to get the list of centers of data first and then get a list of data center hosts.

    It is best to make these repeated requests to the java level and return only the list that you want to the user interface.

    You can get all the objects in the host of the system with a simple query using a constraint with targetType = 'HostSystem', but you will need to eliminate those from other vCenter servers.  See how this chassis example queries all hosts the Java later in the getHosts() method: samples/chassis-app/chassisRackVSphere-service/src/main/java/com/vmware/samples/chassisRackVSphere/ChassisRackVSphereDataAdapter.java

    Another option is to use the vSphere Web Services SDK to browse vCenter. See the vSphere management forum for help on these APIs.  See this plugin of the sample using this SDK

    samples/vsphereviews/vsphere-wssdk-provider/src/main/java/com/vmware/samples/wssdkprovider/VmDataProviderImpl.java

  • Is there a way to prevent the iPad mail to use the former winners as suggestions. I want to limit suggestions for only groups and individuals in my database of contacts

    Is there a way to prevent mail iPad with former winners like suggestions for email addresses?

    I want to limit suggestions for only e-mail addresses in my database of contacts.

    You cannot stop suggestions. Usually, you can remove but I just checked and I don't know if it is still possible.

  • I just discovered that Mozilla plans to eliminate groups of tabs in Firefox. Is there a way to keep?

    I just discovered that Mozilla plans to eliminate groups of tabs in Firefox. Only, I discovered that this feature is by reading an article in PC World on plans to remove future versions of Mozilla's Firefox. I just tried the service for the first time. That's exactly what I searched for, and now it is about to be wiped out. My question is this: If we want to keep this feature, is there a way for us to do?

    -Thank you

    http://www.gHacks.NET/2015/11/22/tab-groups-add-on-for-Firefox-resurrects-soon-to-be-removed-panorama-feature/

Maybe you are looking for

  • notification light won't stop flashing!

    My notification light keeps flashing green. I have no new notification and I went through all the programs that I get notifications and the turned off and it still continues to blink when the screen is off. Please help, as this is slightly drain my b

  • Mid-2013 install Macbook Air crash on wake after El Capitan

    Since I upgraded my MBA to El Capitan has been crashing everytime I open the lid to sleep. It will open and be responsive for a few seconds, then the locks of cursor for a few seconds, and then it crashes. El Capitan 10.11.1 Model name: MacBook Air M

  • speakers

    I have a new x 300 which works well, except that I can not all sounds. All the indicators of the computer indicate that sound is working; It isn't muted. Any suggestions? Thanks in advance...

  • I need the number of support please

    I NEED THE NUMBER OF SUPPORT PLEASE. I CAN NOT CONNECT TO XBOX ONLINE. I TRIED ALL THE THINGS.

  • I have 3 Professional edition on my desktop PC, they did an update and now they will not boot.

    I have 3 Professional edition on my desktop PC and they all have a few updates a few days ago and when they went to restart as he asked, none of them does not start because of the update, so is this update file corrupted? If Yes / if not, what should