12-7
Cisco ASA Series Firewall ASDM Configuration Guide
Chapter12 Configuring Inspection for Voice and Video Protocols
H.323 Inspection
Regular Expression Class—Lists the defined regular expression classes to match.
Manage—Opens the Manage Regular Expression Class dialog box, which lets you configure
regular expression class maps.
Media Type Criterion Values—Specifies which media type to match.
Audio—Match audio type.
Video—Match video type.
Data—Match data type.
H.323 Inspect Map
Configuration> Global Objects > Inspect Maps > H.323
The H.323 pane lets you view previously configured H.323 application inspection maps. An H.323 map
lets you change the default configuration values used for H.323 application inspection.
H.323 inspection supports RAS, H.225, and H.245, and its functionality translates all embedded IP
addresses and ports. It performs state tracking and filtering and can do a cascade of inspect function
activation. H.323 inspection supports phone number filtering, dynamic T.120 control, H.245 tunneling
control, HSI groups, protocol state tracking, H.323 call duration enforcement, and audio/video control.
Fields
H.323 Inspect Maps—Table that lists the defined H.323 inspect maps.
Add—Configures a new H.323 inspect map. To edit an H.323 inspect map, choose the H.323 entry
in the H.323 Inspect Maps table and click Customize.
Delete—Deletes the inspect map selected in the H.323 Inspect Maps table.
Security Level—Select the security level (low, medium, or high).
Low—Default.
State Checking h225 Disabled
State Checking ras Disabled
Call Party Number Disabled
Call duration Limit Disabled
RTP conformance not enforced
Medium
State Checking h225 Enabled
State Checking ras Enabled
Call Party Number Disabled
Call duration Limit Disabled
RTP conformance enforced
Limit payload to audio or video, based on the signaling exchange: no
High
State Checking h225 Enabled
State Checking ras Enabled