
20-16
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide using ASDM
OL-20748-01
Chapter 20 Using Modular Policy Framework
Defining Actions (Layer 3/4 Policy Map)
Note
Application inspection includes multiple inspection types, and each inspection type is a separate feature
when you consider the matching guidelines above.
Order in Which Multiple Feature Actions are Applied
The order in which different types of actions in a policy map are performed is independent of the order
in which the actions appear in the policy map. Actions are performed in the following order:
1.
TCP and UDP connection settings, and TCP state bypass
2.
Application inspection (multiple types)
The order of application inspections applied when a class of traffic is classified for multiple
inspections is as follows. Only one inspection type can be applied to the same traffic. WAAS
inspection is an exception, because it can applied along with other inspections for the same traffic.
See the
“Incompatibility of Certain Feature Actions” section on page 20-17
for more information.
a.
CTIQBE
b.
DNS
c.
FTP
d.
GTP
e.
H323
f.
HTTP
g.
ICMP
h.
ICMP error
i.
ILS
j.
MGCP
k.
NetBIOS
l.
PPTP
m.
Sun RPC
n.
RSH
o.
RTSP
p.
SIP
q.
Skinny
r.
SMTP
s.
SNMP
t.
SQL*Net
u.
TFTP
v.
XDMCP
w.
DCERPC
3.
Permitting or Denying Application Types with PISA Integration
Summary of Contents for 6500 - Catalyst Series 10 Gigabit EN Interface Module Expansion
Page 35: ...P A R T 1 Getting Started and General Information ...
Page 36: ......
Page 297: ...P A R T 2 Configuring the Security Policy ...
Page 298: ......
Page 521: ...P A R T 3 System Administration ...
Page 522: ......
Page 613: ...P A R T 4 Reference ...
Page 614: ......