avdoshkin Posted April 10, 2013 Posted April 10, 2013 Всем, привет! Есть оборудование cisco ASR 1004 c помощью NBAR блокирую сайты: class-map match-any terror match protocol http host "*nurru.com" policy-map terror class terror police cir 8000 conform-action drop exceed-action drop interface TenGigabitEthernet0/0/0.6 ip nbar protocol-discovery service-policy input terror Вопрос, как можно сделать редирект с заблокированного на страничку предупреждения. Какое количество в class-map можно вешать url или host, на данный момент zapret-info.gov.ru количество заблокированных сайтов 500. Вставить ник Quote
Alex/AT Posted April 10, 2013 Posted April 10, 2013 In Cisco IOS XE Release 3.1S and later releases, up to 56 parameters or subclassifications per protocol per router can be specified with the match protocol http command. These parameters or subclassifications can be a combination of any of the available match choices, such as host matches, MIME matches, server matches, and URL matches. For other Cisco IOS XE releases and platforms, the maximum is 24 parameters or subclassifications per protocol per router. Вставить ник Quote
avdoshkin Posted April 10, 2013 Author Posted April 10, 2013 (edited) In Cisco IOS XE Release 3.1S and later releases, up to 56 parameters or subclassifications per protocol per router can be specified with the match protocol http command. These parameters or subclassifications can be a combination of any of the available match choices, such as host matches, MIME matches, server matches, and URL matches. For other Cisco IOS XE releases and platforms, the maximum is 24 parameters or subclassifications per protocol per router. Ответ Edited April 10, 2013 by avdoshkin Вставить ник Quote
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.