Contents
xvi
Cisco Security Appliance Command Line Configuration Guide
OL-10088-01
Defining a QoS Policy Map 24-5
Applying Rate Limiting 24-6
Activating the Service Policy 24-7
Applying Low Latency Queueing 24-8
Configuring Priority Queuing 24-8
Sizing the Priority Queue 24-8
Reducing Queue Latency 24-9
Configuring QoS 24-9
Viewing QoS Configuration 24-12
Viewing QoS Service Policy Configuration 24-12
Viewing QoS Policy Map Configuration 24-13
Viewing the Priority-Queue Configuration for an Interface 24-13
Viewing QoS Statistics 24-14
Viewing QoS Police Statistics 24-14
Viewing QoS Priority Statistics 24-14
Viewing QoS Priority Queue Statistics 24-15
CHAPTER
25 Configuring Application Layer Protocol Inspection 25-1
Inspection Engine Overview 25-2
When to Use Application Protocol Inspection 25-2
Inspection Limitations 25-2
Default Inspection Policy 25-3
Configuring Application Inspection 25-5
CTIQBE Inspection 25-9
CTIQBE Inspection Overview 25-9
Limitations and Restrictions 25-10
Verifying and Monitoring CTIQBE Inspection 25-10
DCERPC Inspection 25-11
DCERPC Overview 25-11
Configuring a DCERPC Inspection Policy Map for Additional Inspection Control 25-12
DNS Inspection 25-13
How DNS Application Inspection Works 25-13
How DNS Rewrite Works 25-14
Configuring DNS Rewrite 25-15
Using the Static Command for DNS Rewrite 25-15
Using the Alias Command for DNS Rewrite 25-16
Configuring DNS Rewrite with Two NAT Zones 25-16
DNS Rewrite with Three NAT Zones 25-17