Cisco Systems 2.5 Network Router User Manual


  Open as PDF
of 1002
 
10-9
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
Chapter 10 Application Security
HTTP
Enable HTTP inspection Checkbox
Check if you want the router to inspect HTTP traffic. If you want to block traffic
from Java applications, you can specify a Java blocking filter by clicking the ...
button and either specifying an existing ACL, or creating a new ACL for Java
inspection.
Enable HTTPS inspection checkbox
Check if you want the router to inspect HTTPS traffic.
Set time out value checkbox
Check if you want to set a time out for HTTP sessions, and enter the number of
seconds in the Time-Out field. Sessions will be dropped that exceed this amount
of time.
Enable audit trail
You can make CBAC audit trail settings for HTTP traffic that will override the
setting in the Global Timeouts and Thresholds window. Default means that the
current global setting will be used. On explicitly enables the CBAC audit trail for
HTTP traffic and for HTTPS traffic if HTTPS inspection is enabled, and overrides
the global audit trail setting. Off explicitly disables the CBAC audit trail for
HTTP traffic and for HTTPS traffic if HTTPS inspection is enabled, and overrides
the global audit trail setting.
Header Options
You can have the router permit or deny traffic based on HTTP header length and
the request method contained in the header. Request methods are the commands
sent to HTTP servers to fetch URLs, web pages, and perform other actions. To
learn about the buttons and drawers available in the Application Security tab,
click Application Security Windows.