iii
Cisco Security Appliance Command Line Configuration Guide
OL-10088-01
CONTENTS
About This Guide xxxiii
Document Objectives xxxiii
Audience xxxiii
Related Documentation xxxiv
Document Organization xxxiv
Document Conventions xxxvii
Obtaining Documentation xxxviii
Cisco.com xxxviii
Product Documentation DVD xxxviii
Ordering Documentation xxxviii
Documentation Feedback xxxviii
Cisco Product Security Overview xxxix
Reporting Security Problems in Cisco Products xxxix
Obtaining Technical Assistance xl
Cisco Technical Support & Documentation Website xl
Submitting a Service Request xli
Definitions of Service Request Severity xli
Obtaining Additional Publications and Information xli
CHAPTER
1 Introduction to the Security Appliance 1-1
Firewall Functional Overview 1-1
Security Policy Overview 1-2
Permitting or Denying Traffic with Access Lists 1-2
Applying NAT 1-2
Using AAA for Through Traffic 1-2
Applying HTTP, HTTPS, or FTP Filtering 1-3
Applying Application Inspection 1-3
Sending Traffic to the Advanced Inspection and Prevention Security Services Module 1-3
Sending Traffic to the Content Security and Control Security Services Module 1-3
Applying QoS Policies 1-3
Applying Connection Limits and TCP Normalization 1-3
Firewall Mode Overview 1-3
Stateful Inspection Overview 1-4
VPN Functional Overview 1-5