Cisco Cisco ASA 5555-X Adaptive Security Appliance 技术手册

下载
页码 32
 
30
XML Examples for the Cisco Application Centric Infrastructure Security Device Package, Version 1.2(7)
 
  New same-security-traffic Command
                        <vnsDevParam key="rsh" name="rsh" value="enable"/>
                    </vnsDevFolder>
                </vnsDevFolder>
            </vnsDevFolder>
        </vnsLDevVip>
    </fvTenant>
</polUni>
New same-security-traffic Command
ASA Configuration
Same-security-traffic permit inter-interface
Same-security-traffic permit intra-interface
XML Example
<polUni>
    <fvTenant name="tenant1">
        <vnsLDevVip name="Firewall">
            <vnsDevFolder key="SameSecurityTraffic" name="SameSecurityTraffic">
                <vnsDevParam key="inter_interface" name="inter_interface" value="permit"/>
                <vnsDevParam key="intra_interface" name="intra_interface" value="permit"/>
            </vnsDevFolder>
        </vnsLDevVip>
    </fvTenant>
</polUni>
New time-range Command
ASA Configuration
time-range T1-time-range
 absolute start 08:09 07 August 2016 end 12:20 23 September 2018
 periodic Tuesday Thursday 8:09 to 20:00
 periodic Wednesday 5:07 to Tuesday 17:00
access-list example-list extended permit ip any any time-range T1-time-range
XML Example
<polUni>
    <fvTenant name="tenant1\">
        <vnsAbsGraph name = "WebGraph">
            <vnsAbsNode name = "FW1">
                <vnsAbsDevCfg>
                    <vnsAbsFolder key="TimeRange" name="T1-time-range">
                        <vnsAbsFolder key="AbsoluteTimeDate" name="AbsoluteTimeDate">
                            <vnsAbsFolder key="End" name="End">