nó sẽ so sánh cấu hình hiện tại với một danh sách rộng lớn (hơn 30 bài) của cấu hình bảo mật thích hợp. Hình 18-4 cho thấy các kết quả này xác nhận bảo mật giao an ninh kiểm toán kiểm tra rất nhiều thiết lập bảo mật trên router. | 446 Chapter 18 Cisco Device Hardening Now that SDM knows which interfaces are Inside and Outside it compares the current configuration with an extensive list more than 30 items of appropriate security configurations. Figure 18-4 shows the results of this interface security validation. Figure 18-4 SDM Security Audit Security Report The SDM security audit checks numerous security settings on the router. Figure 18-4 shows only a portion of the security report. The remainder of the report can be viewed by dragging the scroll bar down. The report indicates a Passed or Not Passed status for each of the criteria evaluated. From this page you have the option of saving the report to the local hard drive. Click Close to advance to the final action of the security audit. The last action in the security audit is to correct the Not Passed issues that were displayed in the security report. Figure 18-5 shows this final page. If the Security Problems Identified list is lengthy you might need to use the scroll bar to see all the problems. Clicking the Fix All button at the top of the page checks each individual Fix it box in the list. You can also select check boxes individually for correction. Once you have checked the appropriate Fix it boxes click Next to apply the corrections to the router. Note that the Back button on this page although active does not work. The entire security audit process must be run again to return to the security report. Using SDM to Secure a Router 447 Figure 18-5 SDM Security Audit Fix-It Page Application of the features is a two-step process. The first screen after clicking Next is a summary screen of the features that will be applied. This list corresponds to the Fix it list from the previous screen. It is possible to return to the previous screen with the Back button. This might be necessary to select additional corrective measures or remove selected corrective measures. Click Finish to cause SDM to push the appropriate configurations to the router.