48-21
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter 48 Configuring Inspection for Voice and Video Protocols
RTSP Inspection
Restrictions and Limitations
The following restrictions apply to the RSTP inspection.
• The ASA does not support multicast RTSP or RTSP messages over UDP.
• The ASA does not have the ability to recognize HTTP cloaking where RTSP messages are hidden
in the HTTP messages.
• The ASA cannot perform NAT on RTSP messages because the embedded IP addresses are contained
in the SDP files as part of HTTP or RTSP messages. Packets could be fragmented and ASA cannot
perform NAT on fragmented packets.
• With Cisco IP/TV, the number of translates the ASA performs on the SDP part of the message is
proportional to the number of program listings in the Content Manager (each program listing can
have at least six embedded IP addresses).
• You can configure NAT for Apple QuickTime 4 or RealPlayer. Cisco IP/TV only works with NAT
if the Viewer and Content Manager are on the outside network and the server is on the inside
network.
Select RTSP Map
Add/Edit Service Policy Rule Wizard > Rule Actions > Protocol Inspection Tab >
Select NetBIOS Map
The Select RTSP Map dialog box lets you select or create a new RTSP map. An RTSP map lets you
change the configuration values used for RTSP application inspection. The Select RTSP Map table
provides a list of previously configured maps that you can select for application inspection.
Fields
• Use the default RTSP inspection map—Specifies to use the default RTSP inspection map.
• Select a RTSP inspect map for fine control over inspection—Lets you select a defined application
inspection map or add a new one.
• Add—Opens the Add Policy Map dialog box for the inspection.
Modes
The following table shows the modes in which this feature is available:
RTSP Inspect Map
Configuration > Global Objects > Inspect Maps > RADIUS
The RTSP pane lets you view previously configured RTSP application inspection maps. An RTSP map
lets you change the default configuration values used for RTSP application inspection. You can use an
RTSP map to protect RTSP traffic.
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
••••—