02-02-2016 12:22 AM - edited 03-12-2019 12:13 AM
Hello everybody,
As far as I know there is no Deep Inspection engine for MSSQL in Cisco ASA, so here arise a question. How to inspect MSSQL traffic in Cisco ASA or better to say how to inspect a custom service or port , where there is no Deep Inspection engine available ?
Regards,
Hesam
02-03-2016 08:48 AM
If there is no inspection defined for specific protocol or service in ASA code, then there is no way you can perform inspection for such service or protocol.
However if there is inspection defined for specific service in ASA code and you are running it on custom port (nonstandard port), you can inspect the service on the custom port as follow.
https://supportforums.cisco.com/document/62316/how-configure-ftp-inspection-non-standard-port-addition-port-21
Thanks,
Ishan
Please remember to select a correct answer and rate helpful posts
02-08-2016 02:04 AM
According to what you say, I think if you can not inspect MSSQL or something like that, that's a big disadvantage. Thanks for the reply.
Regards,
HESAM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide