Cisco 4700M Administration Manual page 256

Application control engine appliance
Hide thumbs Also See for 4700M:
Table of Contents

Advertisement

Configuring the XML Interface
Command
Step 4
[ line_number ] match protocol {http
| https} {any | source-address
ip_address mask }
Example:
host1/Admin(config-cmap-mgmt)# match
protocol xml-https source-address
192.168.10.1 255.255.0.0
Cisco 4700 Series Application Control Engine Appliance Administration Guide
8-10
Purpose
Configures the class map to specify that the HTTP or HTTPS remote
network management protocol can be received by the ACE. You
configure the associated policy map to permit access to ACE for the
specified management protocol. For XML support, a class map of type
management allows IP protocols such as HTTP and HTTPS. As part of
the network management access traffic classification, you also specify
either a client source host IP address and subnet mask as the matching
criteria or instruct the ACE to allow any client source address for the
management traffic classification.
You can include multiple match protocol commands in a class map.
The keywords, arguments, and options are as follows:
line_number—(Optional) Line number that allows you to edit or
delete individual match commands. Enter an integer from 2 to 255
as the line number. For example, you can enter no line_number to
delete long match commands instead of entering the entire line.
http—Specifies Hypertext Transfer Protocol (HTTP) as transfer
protocol to send and receive XML documents between the ACE and
an NMS.
xml-https—Specifies secure (SSL) Hypertext Transfer Protocol
(HTTP) as transfer protocol to send and receive XML documents
between the ACE and an NMS. Communication is performed using
port 10443.
The https keyword specifies secure (SSL) Hypertext Transfer
Note
Protocol (HTTP) for connectivity with the Device Manager GUI
on the ACE using port 443. You can enable both https and
xml-https in a Layer 3 and Layer 4 network management class
map.
any—Specifies any client source address for the management
traffic classification.
source-address—Specifies a client source host IP address and
subnet mask as the network traffic matching criteria. As part of the
classification, the ACE implicitly obtains the destination IP address
from the interface on which you apply the policy map.
ip_address—Source IP address of the client.
mask—Subnet mask of the client in dotted-decimal notation (for
example, 255.255.255.0).
Chapter 8
Configuring the XML Interface
OL-20823-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

4700 series

Table of Contents