
22-14
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide using ASDM
OL-20748-01
Chapter 22 Applying Application Layer Protocol Inspection
CTIQBE Inspection
Figure 22-2
Single Transparent Firewall for Cisco IP SoftPhone (Virtual Conference)
See the following configuration for this example:
firewall transparent
!
interface Vlan50
nameif inside
bridge-group 1
security-level 100
!
interface Vlan100
nameif outside
bridge-group 1
security-level 0
!
interface BVI1
ip address 10.0.0.30 255.0.0.0
!
access-list voice extended permit tcp any any eq ctiqbe
access-list voice extended permit tcp any any eq 1503
!
access-group voice in interface inside
access-group voice in interface outside
!
policy-map global_policy
class inspection_default
inspect ctiqbe
!
Note
TCP port 1503 must be allowed to pass through the security appliance for virtual conference room
collaboration to work with Cisco IP SoftPhone through the security appliance.
The following figure shows a sample configuration for a single transparent firewall for Cisco IP
SoftPhone with NetMeeting enabled (
Figure 22-3
). Cisco IP SoftPhone is configured with the
collaboration setting of NetMeeting.
191376
vlan50
vlan100
Firewall
Service Module
(FWSM)
PC
10.0.0.21/8
10.0.0.101/8
CallManager 3.3
M
PC
10.0.0.23/8
Single transparent with CTIQBE inspection
(with collaboration settings set to Virtual Conference Room)
Inside
Outside
Содержание 6500 - Catalyst Series 10 Gigabit EN Interface Module Expansion
Страница 35: ...P A R T 1 Getting Started and General Information ...
Страница 36: ......
Страница 297: ...P A R T 2 Configuring the Security Policy ...
Страница 298: ......
Страница 521: ...P A R T 3 System Administration ...
Страница 522: ......
Страница 613: ...P A R T 4 Reference ...
Страница 614: ......