Netbios Inspection; Configuring A Netbios Inspection Policy Map For Additional Inspection Control - Cisco PIX 500 Series Configuration Manual

Security appliance command line
Hide thumbs Also See for PIX 500 Series:
Table of Contents

Advertisement

NetBIOS Inspection

The following is sample output from the show mgcp sessions command.
hostname# show mgcp sessions
1 in use, 1 most used
Gateway IP host-pc-2, connection ID 6789af54c9, active 0:00:11
The following is sample output from the show mgcp sessions detail command.
hostname# show mgcp sessions detail
1 in use, 1 most used
Session active 0:00:14
NetBIOS Inspection
NetBIOS inspection is enabled by default. The NetBios inspection engine translates IP addresses in the
NetBios name service (NBNS) packets according to the security appliance NAT configuration.

Configuring a NetBIOS Inspection Policy Map for Additional Inspection Control

To specify actions when a message violates a parameter, create a NETBIOS inspection policy map. You
can then apply the inspection policy map when you enable NETBIOS inspection according to the
"Configuring Application Inspection" section on page
To create a NETBIOS inspection policy map, perform the following steps:
(Optional) Add one or more regular expressions for use in traffic matching commands according to the
Step 1
"Creating a Regular Expression" section on page
commands described in
(Optional) Create one or more regular expression class maps to group regular expressions according to
Step 2
the
Create a NetBIOS inspection policy map, enter the following command:
Step 3
hostname(config)# policy-map type inspect netbios policy_map_name
hostname(config-pmap)#
Where the policy_map_name is the name of the policy map. The CLI enters policy-map configuration
mode.
(Optional) To add a description to the policy map, enter the following command:
Step 4
hostname(config-pmap)# description string
To apply actions to matching traffic, perform the following steps.
Step 5
a.
Cisco Security Appliance Command Line Configuration Guide
25-58
Gateway IP
host-pc-2
Call ID
9876543210abcdef
Connection ID
6789af54c9
Endpoint name
aaln/1
Media lcl port
6166
Media rmt IP
192.168.5.7
Media rmt port
6058
Step
3.
"Creating a Regular Expression Class Map" section on page
Specify the traffic on which you want to perform actions using one of the following methods:
Specify the NetBIOS class map that you created in
hostname(config-pmap)# class class_map_name
hostname(config-pmap-c)#
Chapter 25
Configuring Application Layer Protocol Inspection
25-5.
21-6. See the types of text you can match in the match
21-9.
Step 3
by entering the following command:
OL-12172-03

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5500 series

Table of Contents