Cisco Systems EA6500 Manual De Usuario

Descargar
Página de 570
 
23-5
Catalyst 6500 Series Switch Cisco IOS Software Configuration Guide—Release 12.1 E
78-14099-04
Chapter 23      Configuring Network Security
Configuring the Cisco IOS Firewall Feature Set
Configuring the Cisco IOS Firewall Feature Set
Note
Release 12.1(11b)E and later releases include firewall feature set images.
These sections describe configuring the Cisco IOS firewall feature set on the Catalyst 6500 series 
switches:
  •
  •
  •
Cisco IOS Firewall Feature Set Support Overview
The firewall feature set images support these Cisco IOS firewall features:
  •
Context-based Access Control (CBAC)
  •
Port-to-Application Mapping (PAM)
  •
Authentication Proxy 
These are the firewall feature set image names:
  •
c6sup22-jo3sv-mz
  •
c6sup22-po3sv-mz
  •
c6sup12-jo3sv-mz
  •
c6sup12-po3sv-mz
For more information about Cisco IOS firewall features, refer to the Cisco IOS Security Configuration 
Guide, Release 12.1
, “Traffic Filtering and Firewalls” online publications:
  •
The “Cisco IOS Firewall Overview” chapter at this URL:
  •
The “Configuring Context-Based Access Control” chapter at this URL:
  •
The “Configuring Authentication Proxy” chapter at this URL:
  •
Cisco IOS Security Command Reference publication at this URL:
The following features are supported with and without the use of a Cisco IOS firewall image:
  •
Standard access lists and static extended access lists 
  •
Lock-and-key (dynamic access lists)
  •
IP session filtering (reflexive access lists)
  •
TCP intercept