Download Print this page

Cisco ASA 5506-X Configuration Manual page 139

Cli
Hide thumbs Also See for ASA 5506-X:

Advertisement

Chapter 6
Getting Started with Application Layer Protocol Inspection
Table 6-2
Keywords
ctiqbe
dcerpc [map_name]
dns [map_name]
[dynamic-filter-snoop]
esmtp [map_name]
ftp [strict [map_name]]
gtp [map_name]
h323 h225 [map_name]
h323 ras [map_name]
http [map_name]
icmp
Protocol Keywords
Configure Application Layer Protocol Inspection
Notes
See
CTIQBE Inspection, page
See
DCERPC Inspection, page
If you added a DCERPC inspection policy map according to
Configure a DCERPC Inspection Policy Map, page
identify the map name in this command.
See
DNS Inspection, page
If you added a DNS inspection policy map according to
Configure DNS Inspection Policy Map, page
the map name in this command. The default DNS inspection
policy map name is "preset_dns_map."
To enable DNS snooping for the Botnet Traffic Filter, enter
the dynamic-filter-snoop keyword.
See
SMTP and Extended SMTP Inspection, page
If you added an ESMTP inspection policy map according to
Configure an ESMTP Inspection Policy Map, page
identify the map name in this command.
See
FTP Inspection, page
Use the strict keyword to increase the security of protected
networks by preventing web browsers from sending
embedded commands in FTP requests. See
page 7-9
for more information.
If you added an FTP inspection policy map according to
Configure an FTP Inspection Policy Map, page
identify the map name in this command.
See
GTP Inspection, page
If you added a GTP inspection policy map according to
Configure a GTP Inspection Policy Map, page
the map name in this command.
See
H.323 Inspection, page
If you added an H323 inspection policy map according to
Configure H.323 Inspection Policy Map, page
the map name in this command.
See
H.323 Inspection, page
If you added an H323 inspection policy map according to
Configure H.323 Inspection Policy Map, page
the map name in this command.
See
HTTP Inspection, page
If you added an HTTP inspection policy map according to
Configure an HTTP Inspection Policy Map, page
identify the map name in this command.
See
ICMP Inspection, page
Cisco ASA Series Firewall CLI Configuration Guide
8-1.
10-1.
10-2,
7-1.
7-3, identify
7-39.
7-42,
7-8.
Strict FTP,
7-10,
10-4.
10-6, identify
8-3.
8-6, identify
8-3.
8-6, identify
7-14.
7-16,
7-21.
6-11

Hide quick links:

Advertisement

loading