Solved

Content Filtering in PIX/ASA Firewall

Posted on 2011-09-14
3
586 Views
Last Modified: 2012-06-21
Hi,

What is Content Filtering subject and How to do in PIX/ASA/Router.

Will PIX 515E/ Cisco Routers supports Content Filtering

Regards
Ramu
0
Comment
Question by:RAMU CH
3 Comments
 
LVL 17

Accepted Solution

by:
Garry-G earned 250 total points
ID: 36541097
PIX does not do any content filtering, nor does the ASA 5505.
Content filtering is only possible by adding the CSC card to an ASA 5510 or larger. If you do, you can do content filtering (Antivirus/Malware, keywords etc.). By adding the CSC Plus license, you also get the ability to filter based on website/URL categories, and do Spam filtering for mail transfer.
For IOS routers, there is limited Content Filtering available, but not to the extent and throughput as the CSC can.
As for the CSC performance, lacking official numbers from Cisco, please note that the CSC10 (in our experience) has not been close to keeping up with a 34M line ...
0
 
LVL 35

Assisted Solution

by:Ernie Beek
Ernie Beek earned 250 total points
ID: 36541228
Well you can do some basic content filtering using regular expressions. Have a look at:http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080940c5a.shtml

Keep in mind though you can't filter https URL's, even with the CSC module.
0
 
LVL 1

Author Closing Comment

by:RAMU CH
ID: 36890449
Tks
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

This article will cover setting up redundant ISPs for outbound connectivity on an ASA 5510 (although the same should work on the 5520s and up as well).  It’s important to note that this covers outbound connectivity only.  The ASA does not have built…
Use of TCL script on Cisco devices:  - create file and merge it with running configuration to apply configuration changes
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

947 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

19 Experts available now in Live!

Get 1:1 Help Now