Nonstandard Application Port Implementation


We have not discussed the use of nonstandard application port numbers . It was common for companies to use port 8080 for HTTP instead of the standard port 80. Other applications allow for the use of nonstandard ports, such as FTP, SMTP, and Telnet.

However, CBAC expects traffic to be on standard application ports, and it does not inspect applications that use nonstandard ports. Obviously, that is not good. The Cisco solution is PAM.

graphics/alert_icon.gif

CBAC does not inspect application traffic running on nonstandard application ports unless you use PAM.




CCSP SECUR Exam Cram 2
CCSP SECUR Exam Cram 2 (642-501)
ISBN: B000MU86IQ
EAN: N/A
Year: 2003
Pages: 291
Authors: Raman Sud

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net