Feature Information for Application Aware Firewall
The following table provides release information about the feature or features described in this module. This table lists only the software release that introduced support for a given feature in a given software release train. Unless noted otherwise, subsequent releases of that software release train also support that feature.
Use Cisco Feature Navigator to find information about platform support and Cisco software image support. To access Cisco Feature Navigator, go to www.cisco.com/go/cfn. An account on Cisco.com is not required.
Feature Name |
Releases |
Feature Information |
---|---|---|
Application Aware Zone-based FW |
Cisco IOS XE Fuji 16.9.1 |
This document describes how Zone Based FireWall policy is defined based on the applications that NBAR can detect and make Zone Based FireWall application aware. The Application FireWall inspects the traffic and blocks traffic based on applications, category, application-family or application-group. The following commands were introduced or modified: show class-mapavc-classmap-name show policy-map type inspect zone-pair show policy-map type inspect zone-pair sessions show policy-map type inspect avc show platform hardware qfpactive feature firewall drop |