47-19
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter47 Configuring Inspection of Basic Internet Protocol s
FTP Inspection
Add—Configures a new FTP inspect map. To edit an FTP inspect map, choose the FTP entry in the
FTP Inspect Maps table and click Customize.
Delete—Deletes the inspect map selected in the FTP Inspect Maps table.
Security Level—Select the security level (medium or low).
Low
Mask Banner Disabled
Mask Reply Disabled
Medium—Default.
Mask Banner Enabled
Mask Reply Enabled
File Type Filtering—Opens the Type Filtering dialog box to configure file type filters.
Customize—Opens the Add/Edit FTP Policy Map dialog box for additional settings.
Default Level—Sets the security level back to the default level of Medium.
Modes
The following table shows the modes in which this feature is available:
File Type Filtering
The File Type Filtering dialog box is accessible as follows:
Configuration> Global Objects > Inspect Maps > FTP > MIME File Type Filtering
The File Type Filtering dialog box lets you configure the settings for a file type filter.
Fields
Match Type—Shows the match type, which can be a positive or negative match.
Criterion—Shows the criterion of the inspection.
Value—Shows the value to match in the inspection.
Action—Shows the action if the match condition is met.
Log—Shows the log state.
Add—Opens the Add File Type Filter dialog box to add a file type filter.
Edit—Opens the Edit File Type Filter dialog box to edit a file type filter.
Delete—Deletes a file type filter.
Move Up—Moves an entry up in the list.
Move Down—Moves an entry down in the list.
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
••••