9-11
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
Chapter9 Firew all Policy
Edit Firewall Policy/ACL
Application Area Controls
The following is a list of Application area controls:
Add—Click to add an inspection rule. If there is no inspection rule, you can add
the Cisco SDM default inspection rule, or you can create and add a custom
inspection rule. If you add the Cisco SDM default inspection rule to a traffic flow
with no inspection rule, it will be associated with the inbound traffic to the From
interface. You can add an entry for a specific application whether or not an
inspection rule already exists.
Edit—Click to edit a chosen entry.
Delete—Click to delete a chosen entry.
Global Settings—Click to display a dialog box that enables you to set global
timeouts and thresholds.
Summary—Click to display the application or protocol name and a descript ion
for each entry.
Detail—Click to display the application or protocol name, description, alert
status, audit trail status, and timeout settings for each entry.
Application Area entry fields
The following list describes the Application area entry fields:
Application Protocol—Displays the name of the application or protocol. For
example, vdolive.
Alert—Indicates whether or not an alert is on (default) or off.
Audit Trail—Indicates whether or not audit trail is on or off (default).
Timeout—Displays how long, in seconds, the router waits before blocking return
traffic for this protocol or application.
Description—Displays a short description. For example, VDOLive protocol.
This icon appears when two inspection rules are found in the chosen
traffic direction. Cisco SDM also displays a warning dialog, giving you
the opportunity to dissociate one of the inspection rules fr om the
interface.