cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
367
Views
0
Helpful
1
Replies

Rate limiting by fqdn on ASA 8.4.2

Keith Hoover
Level 1
Level 1

Is there a way to rate-limit by fqdn on ASA 8.4.2?  More specifically I want it to work with https.

 

I found this:  http://www.tunnelsup.com/cisco-asa-identity-firewall/ but am unsure how to apply it to a rate-limit instead of outright blocking.

 

Also, is there a way to log https traffic by fqdn and can that info be logged via NetFlow?  I know how to do it by ip via http but not by fqdn and https

1 Reply 1

Vibhor Amrodia
Cisco Employee
Cisco Employee

Hi,

As per your requirement , you can use the FQDN acl in the class map ACL and then apply the Rate Limiting policies:-

https://supportforums.cisco.com/document/66011/using-hostnames-dns-access-lists-configuration-steps-caveats-and-troubleshooting

http://www.cisco.com/c/en/us/support/docs/security/pix-500-series-security-appliances/91790-pixasa7x-traffic-mgt.html

Thanks and Regards,

Vibhor Amrodia

Review Cisco Networking for a $25 gift card