Specifying The Layer 7 Sccp Inspection Policy Map Action - Cisco 4700M Configuration Manual

Application control engine appliance security
Hide thumbs Also See for 4700M:
Table of Contents

Advertisement

Chapter 3
Configuring Application Protocol Inspection
Configuring a Layer 7 SCCP Inspection Policy

Specifying the Layer 7 SCCP Inspection Policy Map Action

By default, the ACE allows all SCCP packets to pass. To explicitly drop SCCP
traffic, use the reset command as the policy map action if the specified SCCP
traffic matches the inline match statement. You apply the specified action against
the single inline match command in policy map inspection Skinny match
configuration mode.
The syntax of this command is as follows:
reset
The reset command causes the ACE to drop the SCCP traffic that matches the
inline match command.
For example, to specify the ACE is to drop SCCP traffic that matches the match
message-id inline command, enter:
host1/Admin(config)# policy-map type inspect sccp
SCCP_INSPECT_L7POLICY
host1/Admin(config-pmap-ins-skinny)# match SCCP_MATCH message-id range
100 500
host1/Admin(config-pmap-ins-skinny-m)# reset
To disable the action in the Layer 7 SCCP inspection policy map, enter:
host1/Admin(config-pmap-ins-skinny-m)# no reset
Cisco 4700 Series Application Control Engine Appliance Security Configuration Guide
3-73
OL-16202-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

4700 series

Table of Contents