7-23
Cisco Router and Security Device Manager Version 2.2 Users Guide
OL-4015-08
Chapter7 Application Security
HTTP
Header Options
You can have the router permit or deny traffic based on HTTP header length and
the request method contained in the header. Request methods are the comm ands
sent to HTTP servers to fetch URLs, web pages, and perform other actions. To
learn about the buttons and drawers available in the Application Security tab,
click Application Security Windows.

Set maximum header length checkbox

Check this box if you want the router to permit or deny tra ffic based on HTTP
header length, and specify the maximum Request and maximum Response header
length. Use the Permit, Block, and Alarm controls to specify the action the router
is to take when header length exceeds these values.

Configure Extension Request Method checkboxes

If you want the router to permit or deny HTTP traffic based on an exten sion
request method, check the box next to that request method . Use the Permit,
Block, and Alarm controls to specify the action the router is to take when it
encounters traffic using that request method.

Configure RFC Request Method checkboxes

If you want the router to permit or deny HTTP traffic based on one of the HTTP
request methods specified in RFC 2616, Hypertext Transfer ProtocolHTTP/1.1,
check the box next to that request method. Use the Permit, Block, and Alar m
controls to specify the action the router is to take when it encounters traffic using
that request method.
Content Options
You can have the router examine the content of HTTP traffic and permit or block
traffic, and generate alarms based on what things that you make the router check.
To learn about the buttons and drawers available in the Application Security tab,
click Application Security Windows.