<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA blocking long URL access in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-blocking-long-url-access/m-p/672964#M423171</link>
    <description>&lt;P&gt;Hi Forum,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can't seem to find an answer for my ASA blocking long URL access. below is the only http filtering configurations i can find on my firewall. could it be the default settings? How do I turn it off, Is there a better way?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am using ASA5500.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks much,&lt;/P&gt;&lt;P&gt;paul&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;http-map inbound_http&lt;/P&gt;&lt;P&gt;content-length min 100 max 2000 action allow log&lt;/P&gt;&lt;P&gt; content-type-verification match-req-rsp action allow log&lt;/P&gt;&lt;P&gt; max-header-length request 100 action allow log&lt;/P&gt;&lt;P&gt; max-uri-length 100 action allow log&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 09:13:22 GMT</pubDate>
    <dc:creator>paulnigel</dc:creator>
    <dc:date>2020-02-21T09:13:22Z</dc:date>
    <item>
      <title>ASA blocking long URL access</title>
      <link>https://community.cisco.com/t5/network-security/asa-blocking-long-url-access/m-p/672964#M423171</link>
      <description>&lt;P&gt;Hi Forum,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can't seem to find an answer for my ASA blocking long URL access. below is the only http filtering configurations i can find on my firewall. could it be the default settings? How do I turn it off, Is there a better way?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am using ASA5500.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks much,&lt;/P&gt;&lt;P&gt;paul&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;http-map inbound_http&lt;/P&gt;&lt;P&gt;content-length min 100 max 2000 action allow log&lt;/P&gt;&lt;P&gt; content-type-verification match-req-rsp action allow log&lt;/P&gt;&lt;P&gt; max-header-length request 100 action allow log&lt;/P&gt;&lt;P&gt; max-uri-length 100 action allow log&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 09:13:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-blocking-long-url-access/m-p/672964#M423171</guid>
      <dc:creator>paulnigel</dc:creator>
      <dc:date>2020-02-21T09:13:22Z</dc:date>
    </item>
    <item>
      <title>Re: ASA blocking long URL access</title>
      <link>https://community.cisco.com/t5/network-security/asa-blocking-long-url-access/m-p/672965#M423172</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do you have any filter http commands and url-server commands configured? If so, there is an option to truncate long URLs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, bugs appear to exist in the http inspection engine in releases after 7.1(2). Try disabling the http inspection and see if the problem disappears.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Andrew&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Oct 2006 03:41:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-blocking-long-url-access/m-p/672965#M423172</guid>
      <dc:creator>Andrew von Nagy</dc:creator>
      <dc:date>2006-10-09T03:41:19Z</dc:date>
    </item>
    <item>
      <title>Re: ASA blocking long URL access</title>
      <link>https://community.cisco.com/t5/network-security/asa-blocking-long-url-access/m-p/672966#M423173</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Andrew,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks much for your help. when I turned off the http inspection, the error is gone. I do not have any filter http commands and url-server commands configured. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;however, my firewall version is 7.0(4), is there a bug for this version?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks much for your help,&lt;/P&gt;&lt;P&gt;paul&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;========================================&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sh ver&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco Adaptive Security Appliance Software Version 7.0(4) &lt;/P&gt;&lt;P&gt;Device Manager Version 5.0(4)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Compiled on Thu 13-Oct-05 21:43 by builders&lt;/P&gt;&lt;P&gt;System image file is "disk0:/asa704-k8.bin"&lt;/P&gt;&lt;P&gt;Config file at boot was "startup-config"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pixfirewall up 76 days 18 hours&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hardware:   ASA5510, 256 MB RAM, CPU Pentium 4 Celeron 1600 MHz&lt;/P&gt;&lt;P&gt;Internal ATA Compact Flash, 64MB&lt;/P&gt;&lt;P&gt;BIOS Flash AT49LW080: @ 0xffe00000, 1024KB&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Encryption hardware device : Cisco ASA-55x0 on-board accelerator (revision 0x0)&lt;/P&gt;&lt;P&gt;                             Boot microcode   : CNlite-MC-Boot-Cisco-1.2&lt;/P&gt;&lt;P&gt;                             SSL/IKE microcode: CNlite-MC-IPSEC-Admin-3.03&lt;/P&gt;&lt;P&gt;                             IPSec microcode  : CNlite-MC-IPSECm-MAIN-2.04&lt;/P&gt;&lt;P&gt; 0: Ext: Ethernet0/0         : address is 0015.c695.ab9a, irq 9&lt;/P&gt;&lt;P&gt; 1: Ext: Ethernet0/1         : address is 0015.c695.ab9b, irq 9&lt;/P&gt;&lt;P&gt; 2: Ext: Ethernet0/2         : address is 0015.c695.ab9c, irq 9&lt;/P&gt;&lt;P&gt; 3: Ext: Ethernet0/3         : address is 0015.c695.ab9d, irq 9&lt;/P&gt;&lt;P&gt; 4: Ext: Management0/0       : address is 0015.c695.ab99, irq 11&lt;/P&gt;&lt;P&gt; 5: Int: Not licensed        : irq 11&lt;/P&gt;&lt;P&gt; 6: Int: Not licensed        : irq 5&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;               &lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Licensed features for this platform:&lt;/P&gt;&lt;P&gt;Maximum Physical Interfaces : Unlimited &lt;/P&gt;&lt;P&gt;Maximum VLANs               : 10        &lt;/P&gt;&lt;P&gt;Inside Hosts                : Unlimited &lt;/P&gt;&lt;P&gt;Failover                    : Active/Standby&lt;/P&gt;&lt;P&gt;VPN-DES                     : Enabled   &lt;/P&gt;&lt;P&gt;VPN-3DES-AES                : Enabled   &lt;/P&gt;&lt;P&gt;Security Contexts           : 0         &lt;/P&gt;&lt;P&gt;GTP/GPRS                    : Disabled  &lt;/P&gt;&lt;P&gt;VPN Peers                   : 150       &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This platform has an ASA 5510 Security Plus license.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Serial Number: xxx&lt;/P&gt;&lt;P&gt;Running Activation Key: xxx &lt;/P&gt;&lt;P&gt;Configuration register is 0x1&lt;/P&gt;&lt;P&gt;Configuration last modified by enable_15 at 12:58:54.429 Mal Mon Oct 9 2006&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; pixfirewall#  &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Oct 2006 04:04:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-blocking-long-url-access/m-p/672966#M423173</guid>
      <dc:creator>paulnigel</dc:creator>
      <dc:date>2006-10-09T04:04:04Z</dc:date>
    </item>
  </channel>
</rss>

