EasyManuals Logo
Home>Cisco>Firewall>5510 - ASA SSL / IPsec VPN Edition

Cisco 5510 - ASA SSL / IPsec VPN Edition User Manual

Cisco 5510 - ASA SSL / IPsec VPN Edition
2164 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #1135 background imageLoading...
Page #1135 background image
1-29
Cisco ASA Series CLI Configuration Guide
Chapter 1 Configuring Inspection of Basic Internet Protocols
IPv6 Inspection
drop log
match header destination-option
drop log
match header routing-address count gt 0
drop log
match header routing-type eq 0
drop log
Configuring IPv6 Inspection
To enable IPv6 inspection, perform the following steps.
Detailed Steps
Command Purpose
Step 1
class-map name
Example:
hostname(config)# class-map ipv6_traffic
Creates a class map to identify the traffic for which you want to
apply the inspection.
Step 2
match parameter
Example:
hostname(config-cmap)# match access-list
ipv6
Specifies the traffic in the class map. See the “Identifying Traffic
(Layer 3/4 Class Maps)” section on page 1-12 for more
information.
Step 3
policy-map name
Example:
hostname(config)# policy-map ipv6_policy
Adds or edits a policy map that sets the actions to take with the
class map traffic.
Step 4
class name
Example:
hostname(config-pmap)# class ipv6_traffic
Identifies the class map created in Step 1
Step 5
inspect ipv6 [ipv6_policy_map]
Example:
hostname(config-class)# inspect ipv6
ipv6-map
Configures IPv6 inspection. Specify the inspection policy map
you created in the “(Optional) Configuring an IPv6 Inspection
Policy Map” section on page 1-27.
Step 6
service-policy policymap_name {global |
interface interface_name}
Example:
hostname(config)# service-policy
ipv6_policy outside
Activates the policy map on one or more interfaces. global applies
the policy map to all interfaces, and interface applies the policy
to one interface. Only one global policy is allowed. You can
override the global policy on an interface by applying a service
policy to that interface. You can only apply one policy map to
each interface.

Table of Contents

Other manuals for Cisco 5510 - ASA SSL / IPsec VPN Edition

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco 5510 - ASA SSL / IPsec VPN Edition and is the answer not in the manual?

Cisco 5510 - ASA SSL / IPsec VPN Edition Specifications

General IconGeneral
BrandCisco
Model5510 - ASA SSL / IPsec VPN Edition
CategoryFirewall
LanguageEnglish

Related product manuals