Ctiqbe Inspection; Ctiqbe Inspection Overview; Limitations And Restrictions - Cisco 7604 Configuration Manual

Catalyst 6500 series switch and cisco 7600 series router firewall services module configuration guide using the cli
Hide thumbs Also See for 7604:
Table of Contents

Advertisement

CTIQBE Inspection

Table 22-2
Keywords
sunrpc
tftp
waas
xdmcp
To activate the policy map on one or more interfaces, enter the following command:
Step 6
hostname(config)# service-policy policymap_name {global | interface interface_name}
Where global applies the policy map to all interfaces, and interface applies the policy to one interface.
By default, the default policy map, "global_policy," is applied globally. Only one global policy is
allowed. You can override the global policy on an interface by applying a service policy to that interface.
You can only apply one policy map to each interface.
CTIQBE Inspection
This section describes how to enable CTIQBE application inspection and change the default port
configuration. This section includes the following topics:

CTIQBE Inspection Overview

The inspect ctiqbe command enables CTIQBE protocol inspection, which supports NAT, PAT, and
bidirectional NAT. This enables Cisco IP SoftPhone and other Cisco TAPI/JTAPI applications to work
successfully with Cisco CallManager for call setup across the FWSM.
TAPI and JTAPI are used by many Cisco VoIP applications. CTIQBE is used by Cisco TSP to
communicate with Cisco CallManager.

Limitations and Restrictions

The following summarizes limitations that apply when using CTIQBE application inspection:
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide using ASDM
22-10
Protocol Keywords (continued)
CTIQBE Inspection Overview, page 22-10
Limitations and Restrictions, page 22-10
Enabling and Configuring CTIQBE Inspection, page 22-11
Verifying and Monitoring CTIQBE Inspection, page 22-12
CTIQBE Sample Configurations, page 22-13
CTIQBE application inspection does not support configurations with the alias command.
Chapter 22
Applying Application Layer Protocol Inspection
Notes
The default class map includes UDP port 111; if you want to
enable Sun RPC inspection for TCP port 111, you need to
create a new class map that matches TCP port 111, add the
class to the policy, and then apply the inspect sunrpc
command to that class.
OL-20748-01

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

7609-s76137606-sCatalyst 6500 series7600 series

Table of Contents