
Contents
xi
Cisco Security Appliance Command Line Configuration Guide
OL-6721-01
Classification Policy within a Policy Map 18-7
Multi-match Classification Policy across Multiple Feature Domains 18-7
First-match Policy within a Feature Domain 18-8
Action Order 18-9
Advanced Options 18-10
Applying a Policy to an Interface Using a Service Policy 18-10
Direction Policies When Applying a Service Policy 18-10
Types of Direction Policies 18-11
Implicit Direction Policies 18-11
Examples 18-11
Match Port/Interface Policy Example 18-11
Match Access List/Interface Policy Example 18-12
Match Port/Global Policy Example 18-13
Service Policy and NAT 18-14
CHAPTER
19 Intercepting and Responding to Network Attacks 19-1
Configuring IP Audit for Basic IPS Support 19-1
Configuring TCP Normalization 19-2
Protecting Your Network Against Specific Attacks 19-3
Preventing IP Spoofing 19-3
Configuring Connection Limits and Timeouts 19-4
Configuring the Fragment Size 19-5
Blocking Unwanted Connections 19-5
CHAPTER
20 Applying QoS Policies 20-1
Overview 20-1
QoS Concepts 20-2
Identifying Traffic for QoS 20-3
Classifying Traffic for QoS 20-4
Defining a QoS Policy Map 20-6
Applying Rate Limiting 20-6
Verifying the Traffic-Policing Configuration 20-8
Verifying QoS Statistics 20-8
Viewing QoS Police Statistics 20-8
Viewing QoS Priority-Queue Statistics 20-9
Activating the Service Policy 20-9
Kommentare zu diesen Handbüchern