cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
260
Views
0
Helpful
2
Replies

URL firewalling

lubosbella
Level 1
Level 1

Hi,

i want to ask: I have a PIX and web server in DMZ network.

I need to enable access to this server on port 80 from Internet, but only for url address f.e.: www.question.com/answer.

Is possible to do this?

Thank you very much.

2 Replies 2

sadbulali
Level 4
Level 4

Yes it is possible to allow access to the webserver on port 80 from internet.So from the webserver you have you can access the webserver on port 80 from internet for the website that the server is used for. If the Cisco IOS image on the router supports URL filtering but does not support Zone-based Policy Firewall (ZPF), you can maintain one local URL list on the router. This list is used by all Application Security policies in which URL filtering is enabled. Cisco IOS images of release 12.4(9)T and later support all the ZPF features that SDM supports. In a ZPF configuration, a local URL list can be created for each URL filtering parameter map.

look into http inspection on the pix, as long as it's 7.x code or newer.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card