Cisco PIX-515-RPS - PIX 515-R - Firewall Uživatelský manuál Strana 8

  • Stažení
  • Přidat do mých příruček
  • Tisk
  • Strana
    / 28
  • Tabulka s obsahem
  • KNIHY
  • Hodnocené. / 5. Na základě hodnocení zákazníků
Zobrazit stránku 7
8
Cisco PIX Security Appliance Release Notes Version 7.2
OL-10104-01
New Features
Instant Messaging (IM) Inspection
This feature allows you to change the default configuration values used for Instant Messaging (IM)
application inspection.
Instant Messaging (IM) application inspection provides detailed access control to control network usage.
It also helps stop leakage of confidential data and propagations of network threats. A regular expression
database search that represents various patterns for Instant Messaging (IM) protocols to be filtered is
applied. A syslog is generated if the flow is not recognized.
The scope can be limited by using an access list to specify any traffic streams to be inspected. For UDP
messages, a corresponding UDP port number is also configurable. Inspection of Yahoo! Messenger and
MSN Messenger instant messages are supported.
For more information, see the “Instant Messaging Inspection” section in the Cisco Security Appliance
Command Line Configuration Guide. For a complete description of the command syntax, see the Cisco
Security Appliance Command Reference.
MPF-Based Regular Expression Classification Map
This feature allows you to define regular expressions in Modular Policy Framework class maps and
match a group of regular expressions that has the match-any attribute. You can use a regular expression
class map to match the content of certain traffic; for example, you can match URL strings inside HTTP
packets.
For more information, see the “Creating a Regular Expression Class Map” section in the Cisco Security
Appliance Command Line Configuration Guide. For a complete description of the command syntax, see
the Cisco Security Appliance Command Reference.
Radius Accounting Inspection
This feature allows you to protect against an over-billing attack in the Mobile Billing Infrastructure. The
policy-map type inspect radius-accounting command was introduced in this version.
For more information, see the “Configuring Application Inspection” section in the Cisco Security
Appliance Command Line Configuration Guide. For a complete description of the command syntax, see
the Cisco Security Appliance Command Reference.
GKRCS Support for H.323
Two control signaling methods are described in the ITU-T H.323 recommendation: Gatekeeper Routed
Control Signaling (GKRCS) and Direct Call Signalling (DCS). DCS is supported by the Cisco IOS
gatekeeper. This feature adds Gatekeeper Routed Control Signaling (GKRCS) control signaling method
support.
For more information, see the “H.323 Inspection” section in the Cisco Security Appliance Command
Line Configuration Guide. For a complete description of the command syntax, see the Cisco Security
Appliance Command Reference.
Skinny Video Support
This feature adds SCCP version 4.1.2 message support to print the message name processed by the
inspect feature when debug skinny is enabled. CCM 4.0.1 messages are supported.
Zobrazit stránku 7
1 2 3 4 5 6 7 8 9 10 11 12 13 ... 27 28

Komentáře k této Příručce

Žádné komentáře