![Cisco ASA 5512-X Скачать руководство пользователя страница 139](http://html.mh-extra.com/html/cisco/asa-5512-x/asa-5512-x_configuration-manual_63717139.webp)
6-11
Cisco ASA Series Firewall CLI Configuration Guide
Chapter 6 Getting Started with Application Layer Protocol Inspection
Configure Application Layer Protocol Inspection
Table 6-2
Protocol Keywords
Keywords
Notes
ctiqbe
.
dcerpc
[
map_name
]
See
.
If you added a DCERPC inspection policy map according to
Configure a DCERPC Inspection Policy Map, page 10-2
,
identify the map name in this command.
dns
[
map_name
]
[
dynamic-filter-snoop
]
.
If you added a DNS inspection policy map according to
Configure DNS Inspection Policy Map, page 7-3
, identify
the map name in this command. The default DNS inspection
policy map name is “preset_dns_map.”
To enable DNS snooping for the Botnet Traffic Filter, enter
the
dynamic-filter-snoop
keyword.
esmtp
[
map_name
]
See
SMTP and Extended SMTP Inspection, page 7-39
If you added an ESMTP inspection policy map according to
Configure an ESMTP Inspection Policy Map, page 7-42
identify the map name in this command.
ftp
[
strict
[
map_name
]]
.
Use the
strict
keyword to increase the security of protected
networks by preventing web browsers from sending
embedded commands in FTP requests. See
for more information.
If you added an FTP inspection policy map according to
Configure an FTP Inspection Policy Map, page 7-10
identify the map name in this command.
gtp
[
map_name
]
See
.
If you added a GTP inspection policy map according to
Configure a GTP Inspection Policy Map, page 10-6
the map name in this command.
h323 h225
[
map_name
]
See
.
If you added an H323 inspection policy map according to
Configure H.323 Inspection Policy Map, page 8-6
the map name in this command.
h323 ras
[
map_name
]
See
.
If you added an H323 inspection policy map according to
Configure H.323 Inspection Policy Map, page 8-6
the map name in this command.
http
[
map_name
]
See
If you added an HTTP inspection policy map according to
Configure an HTTP Inspection Policy Map, page 7-16
identify the map name in this command.
icmp
.
Содержание ASA 5512-X
Страница 5: ...P A R T 1 Service Policies and Access Control ...
Страница 6: ......
Страница 50: ...3 14 Cisco ASA Series Firewall CLI Configuration Guide Chapter 3 Access Rules History for Access Rules ...
Страница 51: ...P A R T 2 Network Address Translation ...
Страница 52: ......
Страница 126: ...5 28 Cisco ASA Series Firewall CLI Configuration Guide Chapter 5 NAT Examples and Reference DNS and NAT ...
Страница 127: ...P A R T 3 Application Inspection ...
Страница 128: ......
Страница 255: ...P A R T 4 Connection Settings and Quality of Service ...
Страница 256: ......
Страница 288: ...12 14 Cisco ASA Series Firewall CLI Configuration Guide Chapter 12 Quality of Service History for QoS ...
Страница 303: ...P A R T 5 Advanced Network Protection ...
Страница 304: ......
Страница 339: ...P A R T 6 ASA Modules ...
Страница 340: ......
Страница 398: ...17 28 Cisco ASA Series Firewall CLI Configuration Guide Chapter 17 ASA CX Module History for the ASA CX Module ...