Two types of IOS firewall configurations can be configured with SDM.
-
Basic Firewall – Select this option to create a firewall using SDM
default rules. This one-step firewall wizard configures only one outside
interface and one or more inside interfaces. It does not support configuring a
DMZ or custom inspection rules. The use case scenario diagram represents a
typical network configuration for this type of firewall. This is a basic
Firewall that could be used in telecommuter or small office/home office
scenarios.
-
Advanced Firewall – Select this option to be led through the
configuration of a firewall with a DMZ interface by the SDM wizard. This wizard
allows the administrator to configure the router to connect to the Internet and
configure hosts off a DMZ interface to be accessible to outside users. This
wizard also allows for specification of an inspection rule for the
firewall.
The One-step Firewall Configuration Wizard is available from the
Firewall and ACL Main Window page. 