12-8
Cisco ASA Series Firewall ASDM Configuration Guide
Chapter 12 Configuring Inspection for Voice and Video Protocols
H.323 Inspection
Call Party Number Enabled
Call duration Limit 1:00:00
RTP conformance enforced
Limit payload to audio or video, based on the signaling exchange: yes
–
Phone Number Filtering—Opens the Phone Number Filtering dialog box to configure phone
number filters.
–
Customize—Opens the Add/Edit H.323 Policy Map dialog box for additional settings.
–
Default Level—Sets the security level back to the default level of Medium.
Phone Number Filtering
Configuration > Global Objects > Inspect Maps > H323 > Phone Number Filtering
The Phone Number Filtering dialog box lets you configure the settings for a phone number filter.
Fields
• Match Type—Shows the match type, which can be a positive or negative match.
• Criterion—Shows the criterion of the inspection.
• Value—Shows the value to match in the inspection.
• Action—Shows the action if the match condition is met.
• Log—Shows the log state.
• Add—Opens the Add Phone Number Filter dialog box to add a phone number filter.
• Edit—Opens the Edit Phone Number Filter dialog box to edit a phone number filter.
• Delete—Deletes a phone number filter.
• Move Up—Moves an entry up in the list.
• Move Down—Moves an entry down in the list.
Add/Edit H.323 Policy Map (Security Level)
Configuration > Global Objects > Inspect Maps > H323 > H323 Inspect Map > Basic View
The Add/Edit H.323 Policy Map pane lets you configure the security level and additional settings for
H.323 application inspection maps.
Fields
• Name—When adding an H.323 map, enter the name of the H.323 map. When editing an H.323 map,
the name of the previously configured H.323 map is shown.
• Description—Enter the description of the H323 map, up to 200 characters in length.
• Security Level—Select the security level (low, medium, or high).
–
Low—Default.
State Checking h225 Disabled
State Checking ras Disabled