Cisco ACE-4710-K9 Administration Manual page 136

Application control engine appliance
Table of Contents

Advertisement

Class Map and Policy Map Configuration Quick Start
Table 4-6
Task and Command Example
5.
6.
Cisco 4700 Series Application Control Engine Appliance Administration Guide
4-22
Layer 7 Policy Map Configuration Quick Start (continued)
(Optional) Create and configure a Layer 7 application inspection policy map
that enables the deep packet inspection of the HTTP protocol.
host1/Admin(config)# policy-map type inspect http all-match
HTTP_INSPECT_L7_POLICY
host1/Admin(config-pmap-ins-http)# description HTTP protocol deep
inspection of incoming traffic
host1/Admin(config-pmap-ins-http)# class HTTP_INSPECT_L7_CLASS
host1/Admin(config-pmap-ins-http-c)# permit log
(Optional) Create and configure a Layer 7 policy map that enables FTP
command inspection.
host1/Admin(config) # policy-map type inspect ftp first-match
FTP_INSPECTION_L7_POLICY
host1/Admin(config-pmap-ftp-ins)# description FTP command
inspection of incoming traffic
host1/Admin(config-pmap-ftp-ins)# class FTP_INSPECT_L7_CLASS
host1/Admin(config-pmap-ftp-ins-c)# match request-method stou
host1/Admin(config-pmap-ftp-ins-c)# deny
Chapter 4
Configuring Class Maps and Policy Maps
OL-11157-01

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

4700 series

Table of Contents