50-9
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter50 Configuring Inspection for Management Application Protocols
GTP Inspection
Do not Permit Errors
Maximum Number of Tunnels: 500
GSN timeout: 00:30:00
Pdp-Context timeout: 00:30:00
Request timeout: 00:01:00
Signaling timeout: 00:30:00.
Tunnel timeout: 01:00:00.
T3-response timeout: 00:00:20.
Drop and log unknown message IDs.
IMSI Prefix Filtering—Opens the IMSI Prefix Filtering dialog box to configure IMSI prefix
filters.
Default Level—Sets the security level back to the default.
Details—Shows the Parameters, IMSI Prefix Filtering, and Inspections tabs to configure additional
settings.
Modes
The following table shows the modes in which this feature is available:
Add/Edit GTP Policy Map (Details)
Configuration> Global Objects > Inspect Maps > GTP > GTP Inspect Map > Advanced View
The Add/Edit GTP Policy Map pane lets you configure the security level and additional settings for GTP
application inspection maps.
Fields
Name—When adding a GTP map, enter the name of the GTP map. When editing a GTP map, the
name of the previously configured GTP map is shown.
Description—Enter the description of the GTP map, up to 200 characters in length.
Security Level—Shows the security level and IMSI prefix filtering settings to configure.
Permit Parameters—Tab that lets you configure the permit parameters for the GTP inspect map.
Object Groups to Add
From object group—Specify an object group or use the browse button to open the Add Network
Object Group dialog box.
To object group—Specify an object group or use the browse button to open the Add Network
Object Group dialog box.
Add—Add the specified country code and network code to the IMSI Prefix table.
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
••••