hi , this should work .. > > > class-map type inspect match-all google > match protocol http > > parameter-map type urlfilter google > > exclusive-domain deny google.com > exclusive-domain permit any > > > policy-map type inspect my-firewall-policy > class type inspect my-url-filter-traffic > inspect > urlfilter google > > zone-pair name in-out source in-zone dest out > service-policy type inspect my-firewall-policy > > > > this should go fine. >
-- Regards
_______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com
