April 2004
Intermediate to advanced
864 pages
20h 58m
English
The following are the tasks that are used to configure CBAC:
Set audit trails and alerts.
Set global timeouts and thresholds.
Define port-to-application mapping (PAM).
Define inspection rules.
Apply inspection rules and ACLs to interfaces.
Test and verify.
Turn on logging and audit trail to provide a record of network access through the firewall, including illegitimate access attempts and inbound and outbound services.
Use the ip inspect audit-trail and no ip inspect alert-off commands to enable audit trail and alert, respectively. The following example shows how you might configure logging on a router and enable the syslog server with the ip inspect audit-trail command:
Router(config)# logging onRead now
Unlock full access