Content Security and Control SSM Administrator Guide.pdf
(
2040 KB
)
Pobierz
Cisco Content Security and Control SSM
Administrator Guide
Version 6.0
Corporate Headquarters
Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134-1706
USA
http://www.cisco.com
Tel: 408 526-4000
800 553-NETS (6387)
Fax: 408 526-4100
Text Part Number: OL-8628-01
THE SPECIFICATIONS AND INFORMATION REGARDING THE PRODUCTS IN THIS MANUAL ARE SUBJECT TO CHANGE WITHOUT NOTICE. ALL
STATEMENTS, INFORMATION, AND RECOMMENDATIONS IN THIS MANUAL ARE BELIEVED TO BE ACCURATE BUT ARE PRESENTED WITHOUT
WARRANTY OF ANY KIND, EXPRESS OR IMPLIED. USERS MUST TAKE FULL RESPONSIBILITY FOR THEIR APPLICATION OF ANY PRODUCTS.
THE SOFTWARE LICENSE AND LIMITED WARRANTY FOR THE ACCOMPANYING PRODUCT ARE SET FORTH IN THE INFORMATION PACKET THAT
SHIPPED WITH THE PRODUCT AND ARE INCORPORATED HEREIN BY THIS REFERENCE. IF YOU ARE UNABLE TO LOCATE THE SOFTWARE LICENSE
OR LIMITED WARRANTY, CONTACT YOUR CISCO REPRESENTATIVE FOR A COPY.
The Cisco implementation of TCP header compression is an adaptation of a program developed by the University of California, Berkeley (UCB) as part of UCB’s public
domain version of the UNIX operating system. All rights reserved. Copyright © 1981, Regents of the University of California.
NOTWITHSTANDING ANY OTHER WARRANTY HEREIN, ALL DOCUMENT FILES AND SOFTWARE OF THESE SUPPLIERS ARE PROVIDED “AS IS” WITH
ALL FAULTS. CISCO AND THE ABOVE-NAMED SUPPLIERS DISCLAIM ALL WARRANTIES, EXPRESSED OR IMPLIED, INCLUDING, WITHOUT
LIMITATION, THOSE OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OR ARISING FROM A COURSE OF
DEALING, USAGE, OR TRADE PRACTICE.
IN NO EVENT SHALL CISCO OR ITS SUPPLIERS BE LIABLE FOR ANY INDIRECT, SPECIAL, CONSEQUENTIAL, OR INCIDENTAL DAMAGES, INCLUDING,
WITHOUT LIMITATION, LOST PROFITS OR LOSS OR DAMAGE TO DATA ARISING OUT OF THE USE OR INABILITY TO USE THIS MANUAL, EVEN IF CISCO
OR ITS SUPPLIERS HAVE BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
CCSP, CCVP, the Cisco Square Bridge logo, Follow Me Browsing, and StackWise are trademarks of Cisco Systems, Inc.; Changing the Way We Work, Live, Play, and Learn, and
iQuick Study are service marks of Cisco Systems, Inc.; and Access Registrar, Aironet, BPX, Catalyst, CCDA, CCDP, CCIE, CCIP, CCNA, CCNP, Cisco, the Cisco Certified
Internetwork Expert logo, Cisco IOS, Cisco Press, Cisco Systems, Cisco Systems Capital, the Cisco Systems logo, Cisco Unity, Enterprise/Solver, EtherChannel, EtherFast,
EtherSwitch, Fast Step, FormShare, GigaDrive, GigaStack, HomeLink, Internet Quotient, IOS, IP/TV, iQ Expertise, the iQ logo, iQ Net Readiness Scorecard, LightStream,
Linksys, MeetingPlace, MGX, the Networkers logo, Networking Academy, Network Registrar,
Packet,
PIX, Post-Routing, Pre-Routing, ProConnect, RateMUX, ScriptShare,
SlideCast, SMARTnet, The Fastest Way to Increase Your Internet Quotient, and TransPath are registered trademarks of Cisco Systems, Inc. and/or its affiliates in the United States
and certain other countries.
All other trademarks mentioned in this document or Website are the property of their respective owners. The use of the word partner does not imply a partnership relationship
between Cisco and any other company. (0601R)
Cisco Content Security and Control SSM Administrator Guide
© 2006 Cisco Systems, Inc. All rights reserved.
CONTENTS
About This Guide
ix
Document Objectives
ix
Audience
ix
Related Documentation
x
Document Organization
x
Document Conventions
xi
Obtaining Documentation
xi
Cisco.com
xi
Product Documentation DVD
xi
Ordering Documentation
xii
Documentation Feedback
xii
Cisco Product Security Overview
xii
Reporting Security Problems in Cisco Products
xiii
Obtaining Technical Assistance
xiii
Cisco Technical Support & Documentation Website
Submitting a Service Request
xiv
Definitions of Service Request Severity
xiv
Obtaining Additional Publications and Information
1
xv
xiii
CHAPTER
Introducing the Content Security and Control SSM
Overview
1-1
1-2
1-1
Features and Benefits
Available Documentation
1-3
Important Terms
1-3
Introducing the ASDM Content Security Tab
Configuring Content Security
1-4
1-3
Introducing the CSC SSM Console
1-6
Navigation Panel
1-6
Tab Behavior
1-7
Save Button
1-8
Default Values
1-8
Tooltip Icons
1-9
Online Help
1-9
Links in Online Help
1-10
Cisco Content Security and Control SSM Administrator Guide
OL-8628-01
iii
Contents
Licensing
1-11
Windows That Require Plus Licensing
Process Flow
2
1-12
1-11
CHAPTER
Verifying Initial Setup
2-1
2-1
2-1
Verify ASA Clock Setup
Verify Scanning
2-2
Verify CSC SSM Activation
Test the Antivirus Feature
Verify Component Status
View the Status LED
2-5
2-3
2-3
Understand SSM Management Port Traffic
3
2-6
CHAPTER
Configuring Mail Traffic (SMTP and POP3)
Default Mail Scanning Settings
3-1
3-1
Defining Incoming/Outgoing SMTP Mail
Reviewing SMTP & POP3 Notifications
Types of Notifications
3-4
Modifying Notifications
3-4
Enabling SMTP & POP3 Spam Filtering
Enabling SMTP & POP3 Content Filtering
4
3-2
3-3
Enabling SMTP & POP3 Spyware/Grayware Detection
3-3
Configuring SMTP Message Filter, Disclaimer, & Incoming Mail Domain
3-6
3-8
3-5
CHAPTER
Configuring Web (HTTP) and File Transfer (FTP) Traffic
Default Web and FTP Scanning Settings
Downloading Large Files
4-2
Deferred Scanning
4-3
Scanning HTTPS Traffic
Scanning Webmail
File Blocking
4-4
4-4
4-3
4-3
4-1
4-1
Detecting Spyware/Grayware
URL Blocking
4-5
Blocking Via Local List
4-6
Blocking Via Pattern File (PhishTrap)
4-7
Cisco Content Security and Control SSM Administrator Guide
iv
OL-8628-01
Contents
URL Filtering
4-8
Filtering Settings
4-8
Filtering Rules
4-9
5
CHAPTER
Managing Updates and Log Queries
Updating Components
5-1
Manual Update
5-2
Scheduled Update
5-2
Configuring Proxy Settings
Configuring Syslog Settings
5-3
5-3
5-1
Viewing Log Data
5-3
Logging of Scanning Parameter Exceptions
6
5-4
CHAPTER
Administering Trend Micro InterScan for Cisco CSC SSM
Configuring Connection Settings
6-1
6-2
6-1
Managing Admin Email and Notification Settings
Performing Configuration Backup
6-2
Export (Save) Configuration
6-3
Import Configuration
6-3
Configuring Failover Settings
Installing a System Patch
6-5
6-3
Viewing the Product License
6-5
License Expiration
6-6
License Information Links
6-7
7
CHAPTER
Monitoring Content Security
7-1
7-1
Features of the Content Security Tab
Monitoring Content Security
7-3
Monitoring Threats
7-3
Monitoring Live Security Events
7-5
Monitoring Software Updates
7-6
Monitoring Resources
7-7
8
CHAPTER
Troubleshooting Trend Micro InterScan for Cisco CSC SSM
Troubleshooting Installation
Troubleshooting Activation
8-2
8-4
8-1
What To Do If Installation Fails
8-5
Cisco Content Security and Control SSM Administrator Guide
OL-8628-01
v
Plik z chomika:
musli_com
Inne pliki z tego folderu:
Cisco Security Appliance Command Line Configuration_Guide_Version7.pdf
(6886 KB)
Content Security and Control SSM Administrator Guide.pdf
(2040 KB)
gre_ipsec_ospf.pdf
(1883 KB)
enhance-vpn-pix70.pdf
(52 KB)
ipsec-pix70-nat.pdf
(519 KB)
Inne foldery tego chomika:
642-502 SNRS Exam
642-511 CSVPN Exam
642-513 HIPS Exam
642-522 SNPA Exam
642-532 IPS Exam
Zgłoś jeśli
naruszono regulamin