cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1182
Views
0
Helpful
2
Replies

long url sites is block by cisco ASA

paulnigel
Level 1
Level 1

hi forum,

why is it that my cisco ASA blocking long URL access? what could be the cause of it?

Thanks much,

paul

e.g.

http://rds.yahoo.com/_ylt=A0oGkj_BExpFQqwA44RXNyoA/SIG=19922771t/EXP=1159423297/**http%3a//search.yahoo.com/search%3fp=test%26toggle=1%26ei=UTF-8%26xargs=12KPjg1hVSt4GmmvmnCOObHb%255F%252Dvj0Zlpi3g5UzTYR6a9RL8nQJDqADN%255F2aP%255FdLHL9y7XrQ0JOkvqV2HOs3qODiIxkSdWH8UbKsmJS5%255FIp9DLfdaXlzsbIo0%252Djv3NcQZy8nLl2qbeONz73ZI6L5Hk57%26pstart=5%26fr=yfp-t-500%26b=11

2 Replies 2

ajagadee
Cisco Employee
Cisco Employee

Paul,

Have you configured HTTP Filtering on the ASA. If so, check out the "Truncating Long HTTP URLs" section under "Filtering HTTP URLs":

http://www.cisco.com/univercd/cc/td/doc/product/multisec/asa_sw/v_70/config/filter.htm#wp1042519

Let me know if it helps.

Regards,

Arul

Hi Arul,

I am not sure the settings is configured as it was handover by another engineer. but when I am trying to use the command, i get this:

pixfirewall(config)# filter url longurl-truncate ^

ERROR: % Invalid input detected at '^' marker.

so, i do this, 172.16.160.18 is my internal proxy server, i get this:

pixfirewall(config)# filter url 80 172.16.160.18 255.255.255.255 0.0.0.0 0.0.0$

No url servers found! Use "url-server" first.

what must I do to allow long URL?

Thanks and regards,

Paul

Review Cisco Networking for a $25 gift card