09-27-2006 10:38 PM - edited 02-21-2020 01:11 AM
hi forum,
why is it that my cisco ASA blocking long URL access? what could be the cause of it?
Thanks much,
paul
e.g.
http://rds.yahoo.com/_ylt=A0oGkj_BExpFQqwA44RXNyoA/SIG=19922771t/EXP=1159423297/**http%3a//search.yahoo.com/search%3fp=test%26toggle=1%26ei=UTF-8%26xargs=12KPjg1hVSt4GmmvmnCOObHb%255F%252Dvj0Zlpi3g5UzTYR6a9RL8nQJDqADN%255F2aP%255FdLHL9y7XrQ0JOkvqV2HOs3qODiIxkSdWH8UbKsmJS5%255FIp9DLfdaXlzsbIo0%252Djv3NcQZy8nLl2qbeONz73ZI6L5Hk57%26pstart=5%26fr=yfp-t-500%26b=11
09-28-2006 12:12 AM
Paul,
Have you configured HTTP Filtering on the ASA. If so, check out the "Truncating Long HTTP URLs" section under "Filtering HTTP URLs":
http://www.cisco.com/univercd/cc/td/doc/product/multisec/asa_sw/v_70/config/filter.htm#wp1042519
Let me know if it helps.
Regards,
Arul
09-28-2006 01:04 AM
Hi Arul,
I am not sure the settings is configured as it was handover by another engineer. but when I am trying to use the command, i get this:
pixfirewall(config)# filter url longurl-truncate ^
ERROR: % Invalid input detected at '^' marker.
so, i do this, 172.16.160.18 is my internal proxy server, i get this:
pixfirewall(config)# filter url 80 172.16.160.18 255.255.255.255 0.0.0.0 0.0.0$
No url servers found! Use "url-server" first.
what must I do to allow long URL?
Thanks and regards,
Paul
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide