In this recipe, we will outline how to use Batfish to validate ACL entries and validate the correct traffic handling by these ACLs' definition. This allows us to use Batfish and Ansible as auditing tools to enforce correct security compliance for our infrastructure.
Validating ACLs with Batfish
Getting ready
The device configuration is generated and the network snapshot is packaged, as outlined in the previous recipe.
How to do it...
- Update our network configuration on leaf03 and leaf04 with the following ACLs' entries to secure the web virtual local area network...