This is performed with Application Layer Gateways.
1. Defining a class-map – This defines the “match” conditions. In other words, this specifies what traffic will be flagged for this security policy.
2. Create a Policy-map – set conditions, send to IPS, set priority, etc. In other words, specify what the firewall will do with the “matched” traffic.
3. Modify the service map- (optional) This changes the default inspections performed on the specified service. For example, this is where you would change the default http header length. You can also specify the ftp commands that can be ran.
4. Specify a service-policy – This binds a policy map to an interface.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.