Cisco Systems ASA 5585-X Network Router User Manual


  Open as PDF
of 2086
 
48-8
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter 48 Configuring Inspection for Voice and Video Protocols
H.323 Inspection
H.323 inspection supports RAS, H.225, and H.245, and its functionality translates all embedded IP
addresses and ports. It performs state tracking and filtering and can do a cascade of inspect function
activation. H.323 inspection supports phone number filtering, dynamic T.120 control, H.245 tunneling
control, HSI groups, protocol state tracking, H.323 call duration enforcement, and audio/video control.
Fields
H.323 Inspect Maps—Table that lists the defined H.323 inspect maps.
Add—Configures a new H.323 inspect map. To edit an H.323 inspect map, choose the H.323 entry
in the H.323 Inspect Maps table and click Customize.
Delete—Deletes the inspect map selected in the H.323 Inspect Maps table.
Security Level—Select the security level (low, medium, or high).
Low—Default.
State Checking h225 Disabled
State Checking ras Disabled
Call Party Number Disabled
Call duration Limit Disabled
RTP conformance not enforced
Medium
State Checking h225 Enabled
State Checking ras Enabled
Call Party Number Disabled
Call duration Limit Disabled
RTP conformance enforced
Limit payload to audio or video, based on the signaling exchange: no
High
State Checking h225 Enabled
State Checking ras Enabled
Call Party Number Enabled
Call duration Limit 1:00:00
RTP conformance enforced
Limit payload to audio or video, based on the signaling exchange: yes
Phone Number Filtering—Opens the Phone Number Filtering dialog box to configure phone
number filters.
Customize—Opens the Add/Edit H.323 Policy Map dialog box for additional settings.
Default Level—Sets the security level back to the default level of Medium.