关于h3C防火墙的问题,请大家帮我解决一下。
根据下列策略默认情况下是不是DMZ不能访问Trust区域,但目前DMZ还是能ping通turst区域的计算机。应该怎么定义DMZ区不能访问trust区域。
firewall interzone local trust
firewall interzone local untrust
firewall interzone local DMZ
firewall interzone trust untrust
firewall interzone trust DMZ
firewall interzone DMZ untrust
我的防火墙型号是F100-E,版本号如下:
H3C Comware Software
Comware software, Version 3.40, Feature 1658
Copyright (c) 2004-2008 Hangzhou H3C Technologies Co., Ltd.
All rights reserved.
Without the owner's prior written consent, no decompiling
nor reverse-engineering shall be allowed.
H3C SecPath F100-E uptime is 7 weeks, 5 days, 22 hours, 16 minutes
CPU type: Mips BCM1125H 600MHz
256M bytes DDR SDRAM Memory
16M bytes Flash Memory
Pcb Version:2.0
Logic Version:2.0
BootROM Version:1.01
[SLOT 0] 4FE (Hardware)2.0, (Driver)2.0, (Cpld)2.0
[SLOT 1] SSL-CARD (Hardware)2.0, (Driver)1.0, (Cpld)1.0
[SLOT 2] NDEC (Hardware)2.0, (Driver)3.3, (Cpld)2.0
分享至: