cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1702
Views
5
Helpful
3
Replies

FMC/FTD question

benolyndav
Level 4
Level 4

Hello 

Does anyone know if Firepower would block packets with a via header added to them.??

 

Thanks

1 Accepted Solution

Accepted Solutions

I know that IPS does the http / https inspection header.

 

Look at the  FMC analysis section for events

 

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

View solution in original post

3 Replies 3

balaji.bandi
Hall of Fame
Hall of Fame

You mean FTD can block the based on the header  information :

 

Can you more elaborate with example - so we can suggest that possible or suggest some document to refer.

 

Look at the flow of FTD with Snort

 

https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/212321-clarify-the-firepower-threat-defense-acc.html

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Hi

Yes so we have a 3rd party who have a proxy which adds a via header and I'm wondering how I can investigate this on our FMC/FTD to see if the traffic is being blocked

I know that IPS does the http / https inspection header.

 

Look at the  FMC analysis section for events

 

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Review Cisco Networking products for a $25 gift card