Cisco 4700M Configuration Manual page 305

Application control engine appliance security
Hide thumbs Also See for 4700M:
Table of Contents

Advertisement

Chapter 4
Configuring TCP/IP Normalization and IP Reassembly Parameters
access-list ACL1 line 10 extended permit ip any any
parameter-map type connection TCPIP_PARAM_MAP
class-map match-all L4_TCP_CLASS
policy-map multi-match L4_TCPIP_POLICY
interface vlan 50
Cisco 4700 Series Application Control Engine Appliance Security Configuration Guide
OL-16202-01
Example of a TCP/IP Normalization and IP Reassembly Configuration
set timeout inactivity 30
set ip tos 20
tcp-options timestamp allow
syn-data drop
urgent-flag clear
description Filter TCP Connections
2 match destination-address 172.27.16.7
3 match port tcp eq 21
class L4_TCP_CLASS
connection advanced-options TCP_PARAM_MAP
access-group input ACL1
ip address 192.168.1.100 255.255.255.0
service-policy input L4_TCPIP_POLICY
ip ttl minimum 15
ip options clear
ip df allow
fragment size 400
fragment chain 126
fragment min-mtu 1024
fragment timeout 15
no shutdown
4-47

Advertisement

Table of Contents
loading

This manual is also suitable for:

4700 series

Table of Contents