17-13
User Guide for Cisco Security Manager 4.4
OL-28826-01
Chapter17 Managing Firewall Inspection Rules
Inspection Rules Page
If you select Default Protocol Ports on the first page and do select Limit inspection between source
and destination IP addresses, the second page consists of the options described in the second table
in this section. (The third page will consist of the options described in Add or Edit
Inspect/Application FW Rule Wizard, Inspected Protocol Page, page17-16.)
If you select Custom Destination Ports on the first page, the second page consists of the options
described in the first table in this section. (The third page will consist of the options described in
Add or Edit Inspect/Application FW Rule Wizard, Inspected Protocol Page, page17-16.)
If you select Source and Destination Address and Port on the first page, the second page consists of
the options described in the second table in this section. (The third page will consist of the options
described in Add or Edit Inspect/Application FW Rule Wizard, Inspected Protocol Page,
page 17-16.)
Navigation Path
From the Add or Edit Inspect/Application FW Rule Wizard, page 17-10, select a Match Traffic By option
and click Next.
Related Topics
Understanding Inspection Rules, page 17-1
Choosing the Interfaces for Inspection Rules, page 17-2
Selecting Which Protocols To Inspect, page17-3
Understanding Access Rule Requirements for Inspection Rules, page 17-4
Using Inspection To Prevent Denial of Service (DoS) Attacks on IOS Devices, page17-4
Configuring Inspection Rules, page 17-5
Understanding Interface Role Objects, page 6-67
Editing Rules, page 12-9
Field Reference
The following table describes the options presented on page 2 of the Inspect/Application FW Rule
Wizard after you have selected Custom Destination Ports on the first page of the wizard (described in
Add or Edit Inspect/Application FW Rule Wizard, page17-10).
Table17-3 Add and Edit Inspect/Application FW Rule Wizard Step 2: Protocol and Port Page
Element Description
Protocol The protocol for the ports you are specifying, either TCP, UDP, or both
TCP/UDP.
When configuring Custom Destination Ports for an IOS device, you
must select TCP/UDP.