48-34
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter 48 Configuring Inspection for Voice and Video Protocols
SIP Inspection
• Field Masking—Tab that lets you configure the field masking settings for SIP.
–
Inspect non-SIP URIs—Enables non-SIP URI inspection in Alert-Info and Call-Info headers.
Action—Mask or Log.
Log—Enable or Disable.
–
Inspect server’s and endpoint’s software version—Inspects SIP endpoint software version in
User-Agent and Server headers.
Action—Mask or Log.
Log—Enable or Disable.
• Inspections—Tab that shows you the SIP inspection configuration and lets you add or edit.
–
Match Type—Shows the match type, which can be a positive or negative match.
–
Criterion—Shows the criterion of the SIP inspection.
–
Value—Shows the value to match in the SIP inspection.
–
Action—Shows the action if the match condition is met.
–
Log—Shows the log state.
–
Add—Opens the Add SIP Inspect dialog box to add a SIP inspection.
–
Edit—Opens the Edit SIP Inspect dialog box to edit a SIP inspection.
–
Delete—Deletes a SIP inspection.
–
Move Up—Moves an inspection up in the list.
–
Move Down—Moves an inspection down in the list.
Modes
The following table shows the modes in which this feature is available:
Add/Edit SIP Inspect
Configuration > Global Objects > Inspect Maps > SIP > SIP Inspect Map > Advanced View >
Add/Edit SIP Inspect
The Add/Edit SIP Inspect dialog box lets you define the match criterion and value for the SIP inspect
map.
Fields
• Single Match—Specifies that the SIP inspect has only one match statement.
• Match Type—Specifies whether traffic should match or not match the values.
For example, if No Match is selected on the string “example.com,” then any traffic that contains
“example.com” is excluded from the class map.
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
••••—