[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
(cisco, or any) acl *reducers* out there?
- Subject: (cisco, or any) acl *reducers* out there?
- From: michael.holstein at csuohio.edu (Michael Holstein)
- Date: Thu, 19 Aug 2010 15:31:17 -0400
- In-reply-to: <[email protected]>
- References: <[email protected]>
> I'm wondering if anyone has written a parser which can construct rule-trees and get rid of the cruft, unusable, order-misorder and other issues in a large ACL pool?
>
fwbuilder (www.fwbuilder.org) can import Cisco ACLs and impart a
checkpoint-esque rule tree for you to look at, change, and test .. then
recompile back into ACL syntax. Also works on IPtables, PF, and a few
other things.
Cheers,
Michael Holstein
Cleveland State University