Secured Branch Router Configuration Example
Verify
7
OL-6329-01
Secondary Websense servers configurations
============================================
Other configurations
=====================
Allow Mode: OFF
System Alert: ENABLED
Audit Trail: DISABLED
Log message on Websense server: DISABLED
Maximum number of cache entries: 0
Maximum number of packet buffers: 200
Maximum outstanding requests: 1000
•
show ip urlfilter statistics
—Displays URL filtering statistics, such as the number of requests that
are sent to the Websense server, the number of responses received from the Websense server, the
number of pending requests in the system, the number of failed requests, and the number of blocked
URLs.
Router#
show ip urlfilter statistics
URL filtering statistics
=========================
Current requests count: 0
Current packet buffer count(in use): 0
Current cache entry count: 0
Maxever request count: 0
Maxever packet buffer count: 0
Maxever cache entry count: 0
Total requests sent to URL Filter Server :13
Total responses received from URL Filter Server :13
Total requests allowed: 9
Total requests blocked: 4
Commands for Verifying Cisco IOS Firewall Authentication Proxy
•
show ip auth-proxy
—Displays the authentication proxy entries or configuration.
Router#
show ip auth-proxy cache
Authentication Proxy Cache
Client Name admin, Client IP 192.168.1.118, Port 1902, timeout 120, Time Remaining
120, state INIT
Router#
show ip auth-proxy statistics
configuration
Authentication global cache time is 120 minutes
Authentication global absolute time is 0 minutes
Authentication Proxy Watch-list is disabled
Authentication Proxy Rule Configuration
Auth-proxy name aprule
http list not specified auth-cache-time 120 minutes
Commands for Verifying Context-Based Access Control
•
show ip access-list
—Displays the contents of current IP access lists.
•
show ip inspect session
—Displays CBAC session information.