acl 3000 match-order auto
rule normal deny udp source any destination any destination-port equal tftp
rule normal deny tcp source any destination any destination-port equal 135
rule normal deny udp source any destination any destination-port equal 135
rule normal deny udp source any destination any destination-port equal netbios-ns
rule normal deny udp source any destination any destination-port equal netbios-dgm
rule normal deny tcp source any destination any destination-port equal 139
rule normal deny udp source any destination any destination-port equal netbios-ssn
rule normal deny tcp source any destination any destination-port equal 445
rule normal deny udp source any destination any destination-port equal 445
rule normal deny udp source any destination any destination-port equal 539
rule normal deny udp source any destination any destination-port equal 593
rule normal deny tcp source any destination any destination-port equal 593
rule normal deny udp source any destination any destination-port equal 1434
rule normal deny tcp source any destination any destination-port equal 4444
rule normal deny tcp source any destination any destination-port equal 9996
rule normal deny tcp source any destination any destination-port equal 5554
rule normal deny udp source any destination any destination-port equal 5554
rule normal deny tcp source any destination any destination-port equal 137
rule normal deny tcp source any destination any destination-port equal 138
rule normal deny tcp source any destination any destination-port equal 1025
rule normal deny udp source any destination any destination-port equal 1025
rule normal deny tcp source any destination any destination-port equal 9995
rule normal deny udp source any destination any destination-port equal 9995
rule normal deny tcp source any destination any destination-port equal 1068
rule normal deny udp source any destination any destination-port equal 1068
rule normal deny tcp source any destination any destination-port equal 1023
rule normal deny udp source any destination any destination-port equal 1023