
Configuring Device Security
Defining Access Control
Page 83
– HMP — Host Mapping Protocol (HMP). Collects network information from various networks hosts. HMP
monitors hosts spread over the internet as well as hosts in a single network.
– RDP — Remote Desktop Protocol (RDP). Allows clients to communicate with the Terminal Server over
the network.
– IDPR — Matches the packet to the Inter-Domain Policy Routing (IDPR) protocol.
– IDRP— Matches the packet to the Inter-Domain Routing Protocol (IDRP).
– RSVP — Matches the packet to the ReSerVation Protocol (RSVP).
– AH — Authentication Header (AH). Provides source host authentication and data integrity.
– EIGRP — Enhanced Interior Gateway Routing Protocol (EIGRP). Provides fast convergence, support for
variable-length subnet mask, and supports multiple network layer protocols.
– OSPF — The Open Shortest Path First (OSPF) protocol is a link-state, hierarchical interior gateway
protocol (IGP) for network routing Layer Two (2) Tunneling Protocol, an extension to the PPP protocol
that enables ISPs to operate Virtual Private Networks (VPNs).
– IPIP — IP over IP (IPIP). Encapsulates IP packets to create tunnels between two routers. This ensures
that IPIP tunnel appears as a single interface, rather than several separate interfaces. IPIP enables
tunnel intranets to access the internet, and provides an alternative to source routing.
– PIM — Matches the packet to Protocol Independent Multicast (PIM).
– L2TP— Matches the packet to Layer 2 Internet Protocol (L2IP).
– ISIS — Intermediate System - Intermediate System (ISIS). Distributes IP routing information throughout
a single Autonomous System in IP networks.
– Any — Matches the protocol to any protocol.
• Source Port — Defines the TCP/UDP source port to which the ACE is matched. This field is active only if
800/6-TCP or 800/17-UDP are selected in the Select from List drop-down menu. The possible field range is 0
- 65535.
• Destination Port — Defines the TCP/UDP destination port. This field is active only if 800/6-TCP or 800/17-
UDP are selected in the Select from List drop-down menu. The possible field range is 0 - 65535.
• Source
– IPv4 Address — Matches the source port IPv4 address from which packets are addressed to the ACE.
– Mask — Defines the source IP address wildcard mask. Wildcard masks specify which bits are used and
which bits are ignored. A wild card mask of 255.255.255.255 indicates that no bit is important. A wildcard
of 0.0.0.0 indicates that all the bits are important.
Kommentare zu diesen Handbüchern