rule 5 permit tcp established source 10.10.10.1 0
acl number 3002
rule 5 deny ip source 10.10.10.1 0 destination 10.10.10.0 0.0.0.255
if-match acl 3001
traffic classifier deny-dmz operator and
if-match acl 3002
traffic behavior per-dmz
filter permit
traffic behavior deny-dmz
filter deny
qos policy dmz
classifier per-dmz behavior per-dmz
classifier deny-dmz behavior deny-dmz
port link-type trunk
port trunk permit vlan all
qos apply policy dmz inbound