
47-19
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter 47 Configuring Inspection of Basic Internet Protocols
FTP Inspection
• Add—Configures a new FTP inspect map. To edit an FTP inspect map, choose the FTP entry in the
FTP Inspect Maps table and click Customize.
• Delete—Deletes the inspect map selected in the FTP Inspect Maps table.
• Security Level—Select the security level (medium or low).
–
Low
Mask Banner Disabled
Mask Reply Disabled
–
Medium—Default.
Mask Banner Enabled
Mask Reply Enabled
–
File Type Filtering—Opens the Type Filtering dialog box to configure file type filters.
–
Customize—Opens the Add/Edit FTP Policy Map dialog box for additional settings.
–
Default Level—Sets the security level back to the default level of Medium.
Modes
The following table shows the modes in which this feature is available:
File Type Filtering
The File Type Filtering dialog box is accessible as follows:
Configuration > Global Objects > Inspect Maps > FTP > MIME File Type Filtering
The File Type Filtering dialog box lets you configure the settings for a file type filter.
Fields
• Match Type—Shows the match type, which can be a positive or negative match.
• Criterion—Shows the criterion of the inspection.
• Value—Shows the value to match in the inspection.
• Action—Shows the action if the match condition is met.
• Log—Shows the log state.
• Add—Opens the Add File Type Filter dialog box to add a file type filter.
• Edit—Opens the Edit File Type Filter dialog box to edit a file type filter.
• Delete—Deletes a file type filter.
• Move Up—Moves an entry up in the list.
• Move Down—Moves an entry down in the list.
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
••••—