data:image/s3,"s3://crabby-images/f077b/f077bfe94e395feb7c0376b96f8cee0aa47efef9" alt="Cisco 6500 - Catalyst Series 10 Gigabit EN Interface Module Expansion Скачать руководство пользователя страница 390"
20-14
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide using ASDM
OL-20748-01
Chapter 20 Using Modular Policy Framework
Defining Actions (Layer 3/4 Policy Map)
Creating a Regular Expression Class Map
A regular expression class map identifies one or more regular expressions. You can use a regular
expression class map to match the content of certain traffic; for example, you can match URL strings
inside HTTP packets.
The maximum number of class maps ( Layer 3/4, inspection, and regular expression) is 255 in single
mode or per context in multiple mode. This limit includes default class maps. See the
“Default Class
Maps” section on page 20-4
.
To create a regular expression class map, perform the following steps:
Step 1
Create one or more regular expressions according to the
“Creating a Regular Expression”
section.
Step 2
Create a class map by entering the following command:
hostname(config)#
class-map type regex match-any
class_map_name
hostname(config-cmap)#
Where
class_map_name
is a string up to 40 characters in length. The name “class-default” is reserved.
All types of class maps use the same name space, so you cannot reuse a name already used by another
type of class map.
The
match-any
keyword specifies that the traffic matches the class map if it matches at least one of the
regular expressions.
The CLI enters class-map configuration mode.
Step 3
(Optional) Add a description to the class map by entering the following command:
hostname(config-cmap)#
description
string
Step 4
Identify the regular expressions you want to include by entering the following command for each regular
expression:
hostname(config-cmap)#
match
regex
regex_name
The following example creates two regular expressions, and adds them to a regular expression class map.
Traffic matches the class map if it includes the string “example.com” or “example2.com.”
hostname(config)#
regex url_example example\.com
hostname(config)#
regex url_example2 example2\.com
hostname(config)#
class-map type regex match-any URLs
hostname(config-cmap)#
match
regex
url_example
hostname(config-cmap)#
match
regex
url_example2
Defining Actions (Layer 3/4 Policy Map)
This section describes how to associate actions with Layer 3/4 class maps by creating a Layer 3/4 policy
map. This section includes the following topics:
•
Information About Layer 3/4 Policy Maps, page 20-15
•
Default Layer 3/4 Policy Map, page 20-18
•
Adding a Layer 3/4 Policy Map, page 20-18
Содержание 6500 - Catalyst Series 10 Gigabit EN Interface Module Expansion
Страница 35: ...P A R T 1 Getting Started and General Information ...
Страница 36: ......
Страница 297: ...P A R T 2 Configuring the Security Policy ...
Страница 298: ......
Страница 521: ...P A R T 3 System Administration ...
Страница 522: ......
Страница 613: ...P A R T 4 Reference ...
Страница 614: ......