Chapter 4. Configuring Context-based Access Control on a Cisco Router

Terms you'll need to understand:

  • Stateful inspection

  • State table

  • Access control lists (ACLs)

  • Access control entries (ACEs)

  • Session information

  • Connection-oriented

  • Connectionless

  • Control channel

  • Data channel

  • Three-way handshake

  • SYN

  • SYN-ACK

  • ACK

  • Established state

  • Half-opened session

  • Embryonic

  • Unassembled packets

  • State structure allocation

  • Legal Simple Mail Transfer Protocol (SMTP) commands

  • Demilitarized zone (DMZ)

  • Inbound

  • Outbound

  • Port-to-application mapping (PAM)

Techniques you'll need to master:

  • Configuring event logging

  • Configuring global context-based access control (CBAC) parameters

  • Configuring named CBAC inspection rules

  • Configuring unique CBAC inspection rules

  • Configuring CBAC to inspect traffic ...

Get SECUR Exam Cram™ 2 (Exam 642-501) now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.