C H A P T E R
10-1
Cisco ASA Series Firewall CLI Configuration Guide
10
Inspection for Management Application
Protocols
The following topics explain application inspection for management application protocols. For
information on why you need to use inspection for certain protocols, and the overall methods for
applying inspection, see
Getting Started with Application Layer Protocol Inspection, page 6-1
.
Several common inspection engines are enabled on the ASA by default, but you might need to enable
others depending on your network.
•
•
•
RADIUS Accounting Inspection, page 10-11
•
•
•
DCERPC Inspection
The following sections describe the DCERPC inspection engine.
•
•
Configure DCERPC Inspection, page 10-2
DCERPC Overview
DCERPC is a protocol widely used by Microsoft distributed client and server applications that allows
software clients to execute programs on a server remotely.
This typically involves a client querying a server called the Endpoint Mapper listening on a well known
port number for the dynamically allocated network information of a required service. The client then sets
up a secondary connection to the server instance providing the service. The security appliance allows the
appropriate port number and network address and also applies NAT, if needed, for the secondary
connection.
Summary of Contents for ASA 5512-X
Page 5: ...P A R T 1 Service Policies and Access Control ...
Page 6: ......
Page 51: ...P A R T 2 Network Address Translation ...
Page 52: ......
Page 127: ...P A R T 3 Application Inspection ...
Page 128: ......
Page 255: ...P A R T 4 Connection Settings and Quality of Service ...
Page 256: ......
Page 303: ...P A R T 5 Advanced Network Protection ...
Page 304: ......
Page 339: ...P A R T 6 ASA Modules ...
Page 340: ......