cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
861
Views
0
Helpful
1
Replies

Enabling stateful firewall (ip inspect)

moebiusnz
Level 1
Level 1

Hi there,

I've been trying to enable stateful firewall rules on this router and it won't accept the ip inspect command. Is there a licence or IOS version that I'm missing or feature that I need to activate?

router#sh ver

Cisco IOS Software, C860 Software (C860VAE-IPBASEK9-M), Version 15.1(4)M4, RELEASE SOFTWARE (fc1)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 1986-2012 by Cisco Systems, Inc.

Compiled Wed 21-Mar-12 00:04 by prod_rel_team

ROM: System Bootstrap, Version 15.1(4r)M2, RELEASE SOFTWARE (fc1)

router uptime is 22 hours, 21 minutes

System returned to ROM by power-on

System image file is "flash:c860vae-ipbasek9-mz.151-4.M4.bin"

Last reload type: Normal Reload

This product contains cryptographic features and is subject to United

States and local country laws governing import, export, transfer and

use. Delivery of Cisco cryptographic products does not imply

third-party authority to import, export, distribute or use encryption.

Importers, exporters, distributors and users are responsible for

compliance with U.S. and local country laws. By using this product you

agree to comply with applicable laws and regulations. If you are unable

to comply with U.S. and local laws, return this product immediately.

A summary of U.S. laws governing Cisco cryptographic products may be found at:

http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

If you require further assistance please contact us by sending email to

export@cisco.com.

Cisco 867VAE (BCM6368) processor (revision 0.3) with 234496K/26624K bytes of memory.

Processor board ID GMK1212016M

1 DSL controller

1 Ethernet interface

4 FastEthernet interfaces

1 Gigabit Ethernet interface

1 ATM interface

255K bytes of non-volatile configuration memory.

65536K bytes system flash allocated

router#conf t

Enter configuration commands, one per line.  End with CNTL/Z.

router(config)#ip inspect ?

% Unrecognized command


1 Accepted Solution

Accepted Solutions

Collin Clark
VIP Alumni
VIP Alumni

You need the Advanced Security lOS and the license for it. The part number to order is SL-860-ADSEC

Hope it helps.

View solution in original post

1 Reply 1

Collin Clark
VIP Alumni
VIP Alumni

You need the Advanced Security lOS and the license for it. The part number to order is SL-860-ADSEC

Hope it helps.

Review Cisco Networking for a $25 gift card