<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA 5510 http filtering with regex in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444534#M733477</link>
    <description>&lt;P&gt;hi&lt;/P&gt;&lt;P&gt;I have problem to filter http traffic with regex . URL filtering works fine, but domain name filtering doesn't work correctly. Hire is configuration:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regex MP3Files ".+\.[Mm][Pp][3]"&lt;BR /&gt;regex AVIFiles ".+\.[Aa][Vv][Ii]"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regex Domain1 "myspace\.com"&lt;BR /&gt;regex Domain2 "facebook\.com"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list Inside_Subnet extended permit tcp 172.17.0.0 255.255.0.0 any eq 80&lt;BR /&gt;access-list Inside_Subnet extended permit tcp 172.17.0.0 255.255.0.0 any eq 8080&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map type regex match-any File_Exstension_Class&lt;BR /&gt; match regex AVIFiles&lt;BR /&gt; match regex MP3Files&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;class-map type regex match-any Domain_List_Class&lt;BR /&gt; match regex Domain1&lt;BR /&gt; match regex Domain2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map Inside_Subnet&lt;BR /&gt; match access-list Inside_Subnet&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map type inspect http match-any File_Exstensions&lt;BR /&gt; match request uri regex class File_Exstension_Class&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map type inspect http match-any Domain_Class&lt;BR /&gt; match request header host regex class Domain_List_Class&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map type inspect http Inside_Policy&lt;BR /&gt; parameters&lt;BR /&gt; class File_Exstensions&lt;BR /&gt;&amp;nbsp; drop-connection&lt;BR /&gt; class Domain_Class&lt;/P&gt;&lt;P&gt;&amp;nbsp; drop-connection&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;policy-map inside-policy&lt;BR /&gt; class Inside_Subnet&lt;BR /&gt;&amp;nbsp; inspect http Inside_Policy&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;service-policy inside-policy interface inside&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 17:49:24 GMT</pubDate>
    <dc:creator>GiorgiChubko</dc:creator>
    <dc:date>2019-03-11T17:49:24Z</dc:date>
    <item>
      <title>ASA 5510 http filtering with regex</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444534#M733477</link>
      <description>&lt;P&gt;hi&lt;/P&gt;&lt;P&gt;I have problem to filter http traffic with regex . URL filtering works fine, but domain name filtering doesn't work correctly. Hire is configuration:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regex MP3Files ".+\.[Mm][Pp][3]"&lt;BR /&gt;regex AVIFiles ".+\.[Aa][Vv][Ii]"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regex Domain1 "myspace\.com"&lt;BR /&gt;regex Domain2 "facebook\.com"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list Inside_Subnet extended permit tcp 172.17.0.0 255.255.0.0 any eq 80&lt;BR /&gt;access-list Inside_Subnet extended permit tcp 172.17.0.0 255.255.0.0 any eq 8080&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map type regex match-any File_Exstension_Class&lt;BR /&gt; match regex AVIFiles&lt;BR /&gt; match regex MP3Files&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;class-map type regex match-any Domain_List_Class&lt;BR /&gt; match regex Domain1&lt;BR /&gt; match regex Domain2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map Inside_Subnet&lt;BR /&gt; match access-list Inside_Subnet&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map type inspect http match-any File_Exstensions&lt;BR /&gt; match request uri regex class File_Exstension_Class&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map type inspect http match-any Domain_Class&lt;BR /&gt; match request header host regex class Domain_List_Class&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map type inspect http Inside_Policy&lt;BR /&gt; parameters&lt;BR /&gt; class File_Exstensions&lt;BR /&gt;&amp;nbsp; drop-connection&lt;BR /&gt; class Domain_Class&lt;/P&gt;&lt;P&gt;&amp;nbsp; drop-connection&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;policy-map inside-policy&lt;BR /&gt; class Inside_Subnet&lt;BR /&gt;&amp;nbsp; inspect http Inside_Policy&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;service-policy inside-policy interface inside&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 17:49:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444534#M733477</guid>
      <dc:creator>GiorgiChubko</dc:creator>
      <dc:date>2019-03-11T17:49:24Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 http filtering with regex</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444535#M733489</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The regex for myspace and facebook should be as follows:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regex Domain1 "\.myspace\.com"&lt;BR /&gt;regex Domain2 "\.facebook\.com"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is a sample configuration:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080940e04.shtml"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080940e04.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 23 May 2010 04:20:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444535#M733489</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-05-23T04:20:53Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 http filtering with regex</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444536#M733499</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for help.&lt;BR /&gt; Actually it does not block some of the web sites. &lt;BR /&gt; I have big regex class map, from that class map some of the web sites&amp;nbsp;&amp;nbsp; aren't blocked. &lt;BR /&gt; I done configuration from that example:&lt;BR /&gt; &lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080940e04.shtml"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080940e04.shtml&lt;/A&gt;&lt;BR /&gt; What can be problem? &lt;BR /&gt; ASA Software version is 8.2(1).&lt;BR /&gt; &lt;BR /&gt; &lt;BR /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 27 May 2010 11:23:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444536#M733499</guid>
      <dc:creator>GiorgiChubko</dc:creator>
      <dc:date>2010-05-27T11:23:00Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 http filtering with regex</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444537#M733510</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i have test u'r configuration, n i want to block mp3 file, but u'r configuration was fail.&lt;/P&gt;&lt;P&gt;can u tell what that i miss?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 21 Oct 2010 09:39:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444537#M733510</guid>
      <dc:creator>Dwi Haryanto</dc:creator>
      <dc:date>2010-10-21T09:39:40Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 http filtering with regex</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444538#M733518</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What config are you using? Can you post your class-maps, policy-map and regexes?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 21 Oct 2010 17:56:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444538#M733518</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2010-10-21T17:56:58Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 http filtering with regex</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444539#M733534</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Actually this configuration is working in my network (ASA 8.2). You should check this links:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080940e04.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080940e04.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080940c5a.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080940c5a.shtml&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 21 Oct 2010 20:03:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444539#M733534</guid>
      <dc:creator>GiorgiChubko</dc:creator>
      <dc:date>2010-10-21T20:03:17Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 http filtering with regex</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444540#M733542</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Giorgi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thx i think i miss to write letter 's' on class-map type inspect http match-any File_Exstensions, that way i get any thing not work.&lt;/P&gt;&lt;P&gt;once more thx u so much Giorgi&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Oct 2010 01:38:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-http-filtering-with-regex/m-p/1444540#M733542</guid>
      <dc:creator>Dwi Haryanto</dc:creator>
      <dc:date>2010-10-22T01:38:58Z</dc:date>
    </item>
  </channel>
</rss>

