
18-15
Cisco Security Appliance Command Line Configuration Guide
OL-6721-01
Chapter 18 Using Modular Policy Framework
Direction Policies When Applying a Service Policy
Figure 18-4 Service Policy and NAT Topology
See the following commands for this example:
hostname(config)# static (inside, outside) CLIENT_D_GLOBAL CLIENT_D_REAL
hostname(config)# access-list http_client permit tcp host CLIENT_D_GLOBAL any eq 80
hostname(config)# class-map http_client
hostname(config-cmap)# match access-list http_client
hostname(config)# policy-map http_client
hostname(config-pmap)# class http_client
hostname(config-pmap-c)# inspect http http_map_client
hostname(config-pmap-c)# police output 250000
hostname(config)# service-policy http_client interface outside
126994
policy http_client
outside inside
CLIENT_D_REAL
Host C
Security
appliance
Comentarios a estos manuales