CBAC Overview

Context-Based Access Control (CBAC) gives network protection on multiple levels using the following functions:

  • Traffic filtering

  • Traffic inspection

  • Alerts and audit trails

  • Intrusion detection

The following sections describe these functions in greater detail.

Traffic Filtering

CBAC can provide intelligent filtering of TCP and UDP packets based on the application-layer protocol session information included in the packet. You can configure CBAC to permit only specified TCP and UDP traffic through your firewall when the connection is initiated from within the network you want to protect. CBAC can inspect traffic for sessions that originate either inside or outside your firewall. CBAC is supported for use on intranet, extranet, and Internet ...

Get CCIE Practical Studies: Security (CCIE Self-Study) now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.