Cisco Explorer 4700 Installation Guide Page 454

  • Download
  • Add to my manuals
  • Print
  • Page
    / 648
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 453
12-34
Device Manager Guide, Cisco ACE 4700 Series Application Control Engine Appliance
OL-26645-02
Chapter 12 Configuring Traffic Policies
Configuring Virtual Context Policy Maps
Configuring Virtual Context Policy Maps
Policy maps establish traffic policy for the ACE appliance. The purpose of a traffic policy is to
implement specific ACE appliance functions associated with a traffic class. A traffic policy contains:
A policy map name.
A previously created traffic class map or, optionally, the default class map.
One or more of the individual Layer 3/Layer 4 or Layer 7 policies that specify the actions to be
performed by the ACE appliance.
The ACE appliance executes actions specified in a policy map on a first-match, multi-match, or
all-match basis:
First-match—With a first-match policy map, the ACE appliance executes only the action specified
against the first classification that it matches. Layer 3/Layer 4 Management Traffic, Layer 7 Server
Load Balancing, Layer 7 Command Inspection - FTP, and Layer 7 HTTP Optimization policy maps
are first-match policy maps.
Multi-match—With a multi-match policy map, the ACE appliance executes all possible actions
applicable for a specific classification. Layer 3/Layer 4 Network Traffic policy maps are
multi-match policy maps.
All-match—With an all-match policy map, the ACE appliance attempts to match all specified
conditions against the matching classification and executes the actions of all matching classes until
it encounters a deny for a match request.
You can view a context’s policy maps and their types in the Policy Maps table (Config > Virtual
Contexts > context > Expert > Policy Maps.)
The types of policy maps that you can configure depend on the ACE device type. Table 12-15 lists the
types of policy maps with brief descriptions.
Table 12-15 Policy Maps
Policy Map Description Related Topic
Layer 3/4 Management Traffic
(First-Match)
Layer 3 and Layer 4 policy map for network
management traffic received by the ACE
Setting Policy Map Rules and Actions
for Layer 3/Layer 4 Management
Traffic, page 12-45
Layer 3/4 Network Traffic
(Multi-Match)
Layer 3 and Layer 4 policy map for traffic
passing through the ACE
Setting Policy Map Rules and Actions
for Layer 3/Layer 4 Network Traffic,
page 12-37
Layer 7 Command Inspection - FTP
(First-Match)
Layer 7 policy map for inspection of FTP
commands
Setting Policy Map Rules and Actions
for Layer 7 FTP Command Inspection,
page 12-79
Layer 7 Deep Packet Inspection -
HTTP (All-Match)
Layer 7 policy map for inspection of HTTP
packets
Setting Policy Map Rules and Actions
for Layer 7 HTTP Deep Packet
Inspection, page 12-73
Layer 7 Deep Packet Inspection -
SIP (All-Match)
Layer 7 policy map for inspection of SIP
packets
Setting Policy Map Rules and Actions
for Layer 7 SIP Deep Packet
Inspection, page 12-82
Layer 7 Deep Packet Inspection -
Skinny
Layer 7 policy map for inspection of Skinny
Client Control Protocol (SCCP)
Setting Policy Map Rules and Actions
for Layer 7 Skinny Deep Packet
Inspection, page 12-84
Page view 453
1 ... 453 454 455 ... 648

Comments to this Manuals

No comments