Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Stateless Firewall policy?

This thread has been viewed 1 times
  • 1.  Stateless Firewall policy?

    Posted Feb 09, 2016 01:37 AM

    Hi forum!

     

    Anyone used stateless firewall policy on AOS 6.4.3.6?  I found some documentation for the mobility switches, not the controllers.

     

    I got an issue where I believe I am losing state.  Replies are getting dropped by my drop and log rule, normally I would expect the state to be tracked and the return pakcets permitted.  I guess I would have like this feature to, at least, eliminate the state loss from the picture.

     

    I appreciate this is unusual - also I am reluctant to change a gobal setting.  Anyone got any ideas?  I mean does a permit "ip any any" still exibit state tracking?  I am building a "test silo" in paralell to my production silo,but not enough hours in the day etc :)

     

    Thanks!



  • 2.  RE: Stateless Firewall policy?

    EMPLOYEE
    Posted Feb 09, 2016 03:08 AM

    So, what is your policy and what are you trying to do?  That will determine your course of action.