cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1346
Views
0
Helpful
2
Replies

Layer 7 inspection

ruliffilur
Level 1
Level 1

Hello

I am working with in an organisation that is in need for layer 7 inspect. We need to match protocols like online games, file sharing and any other services that uses dynamic assigned ports.

What Cisco device is able to accomplish this?

//Rulif

2 Replies 2

speculor_cisco
Level 1
Level 1

Hello Rulif.

I have not an answer to your question but I was curious about. So I have decided to throw again your post.

May be Cisco implements only security at Layers 2,3 and 4. It would be quite logic too.

It would be appreciated even only a confirm about this inability.

Thanks.

sean_evershed
Level 7
Level 7

Hi,

You can use NBAR in combination with a class map to do drop this type of traffic. See the attached link for an example based on blocking Skype.

https://supportforums.cisco.com/docs/DOC-5818

See also a Q&A reference guide for NBAR

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6558/ps6612/ps6653/prod_qas09186a00800a3ded_ps6616_Products_Q_and_A_Item.html

Please remember to rate all posts that are helpful

Review Cisco Networking for a $25 gift card