Cisco Systems OL-16647-01 Network Router User Manual


  Open as PDF
of 1230
 
19-4
Cisco ASDM User Guide
OL-16647-01
Chapter 19 Adding Global Objects
Using Network Objects and Groups
Modes
The following table shows the modes in which this feature is available:
Using Network Objects and Groups in a Rule
When you create a rule, you can enter an IP address manually, or you can browse for a network object
or group to use in the rule. To use a network object or group in a rule, perform the following steps:
Step 1 From the rule dialog box, click the ... browse button next to the source or destination address field.
The Browse Source Address or Browse Destination Address dialog box appears.
Step 2 You can either add a new network object or group, or choose an existing network object or group by
double-clicking it.
To find an object in the list, enter a name or IP address in the Filter field and click Filter. The wildcard
characters asterisk (*) and question mark (?) are allowed.
To add a new network object, see the “Configuring a Network Object” section on page 19-2.
To add a new network object group, see the “Configuring a Network Object Group” section on
page 19-3.
After you add a new object or double-click an existing object, it appears in the Selected
Source/Destination field. For access rules, you can add multiple objects and groups in the field,
separated by commas.
Step 3 Click OK.
You return to the rule dialog box.
Modes
The following table shows the modes in which this feature is available:
Viewing the Usage of a Network Object or Group
To view what rules use a network object or group, in the Configuration > Firewall > Objects > Network
Objects/Group pane, click the magnifying glass Find icon.
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
• • • •
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
• • • •