Cisco 4700M Configuration Manual page 229

Application control engine appliance security
Hide thumbs Also See for 4700M:
Table of Contents

Advertisement

Chapter 3
Configuring Application Protocol Inspection
Cisco 4700 Series Application Control Engine Appliance Security Configuration Guide
OL-16202-01
Configuring a Layer 3 and Layer 4 Application Protocol Inspection Traffic Policy
sec-param conn_parammap_name3—(Optional) Specifies the name of a
previously created connection parameter map used to define parameters for
RTSP inspection.
sip—Enables Session Initiation Protocol (SIP) inspection. SIP is used for call
handling sessions and instant messaging. The ACE inspects signaling
messages for media connection addresses, media ports, and embryonic
connections. The ACE also performs Network Address Translations (NATs)
on IP addresses that are embedded in the user-data portion of the packet.
sec-param conn_parammap_name4—(Optional) Specifies the name of
a previously created connection parameter map used to define parameters
for SIP inspection.
policy name5—(Optional) Specifies the name of a previously created
Layer 7 SIP application inspection policy map to implement packet
inspection of Layer 7 SIP application traffic by the ACE. The inspection
checks are based on configured parameters in an existing Layer 7 policy
map and internal RFC compliance checks performed by the ACE. Enter
an unquoted text string with no spaces and a maximum of 64
alphanumeric characters.
If you do not specify a Layer 7 policy map, the ACE performs a
Note
general set of Layer 3 and Layer 4 SIP protocol fixup actions and
internal RFC compliance checks.
skinny—Enables Cisco Skinny Client Control Protocol (SCCP) inspection.
The SCCP is a Cisco proprietary protocol that is used between Cisco
CallManager and Cisco VoIP phones. The ACE performs a NAT on embedded
IP addresses and port numbers in SCCP packet data.
policy name6—(Optional) Specifies the name of a previously created
deep packet inspection of Layer 7 SCCP application traffic by the ACE.
The inspection checks are based on configured parameters in an existing
Layer 7 policy map and internal RFC compliance checks performed by
the ACE. Enter an unquoted text string with no spaces and a maximum
of 64 alphanumeric characters.
Note
If you do not specify a Layer 7 policy map, the ACE performs a
general set of Layer 3 and Layer 4 SCCP protocol fixup actions
and internal RFC compliance checks.
3-105

Advertisement

Table of Contents
loading

This manual is also suitable for:

4700 series

Table of Contents