Version
Modification
11.1.1
This command was introduced as of version 11.1.2
2.6.3.6 ENTRY <id> APP-DETECT SSL-HOST
Matches the SSL server hostname session drawn by AFS' app-detect feature against the regular expression given.
AFS' app-detect feature must be configured for the command to be operative. If no SSL hostname session is detec-
ted when app-detect feature is configured, there is no match.
Syntax:
Stateful Access List #>entry <id> app-detect ssl-host <1..150 chars>
Example:
Stateful Access List 5000> entry 1 app-detect ssl-host "googlevideo\.com"
Command history:
Version
Modification
11.1.1
This command was introduced as of version 11.1.2
2.6.3.7 ENTRY <id> APP-DETECT SSL
Matches the SSL sessions detected by AFS' app-detect feature. AFS' app-detec feature must be configured for the
command to be operative. If no SSL session is detected when said app-detect is configured, there is no match.
Syntax:
Stateful Access List #>entry <id> app-detect ssl
Example:
Stateful Access List 5000> entry 1 app-detect ssl
Command history:
Version
Modification
11.1.1
This command was introduced as of version 11.1.2
2.6.3.8 ENTRY <id> APP-ID
Matches the AppId of the AFS session.
Syntax:
Stateful Access List #>entry <id> app-id ?
l3 protocol-number <0..255>
Match on layer 3 (protocol)
l4 port-number <0..65535>
Match on layer 4 (port)
custom id <0..65535>
Match on custom app-id
Example:
Stateful Access List 5000> entry 1 app-id l4 port-number 80
Command history:
Version
Modification
11.1.1
This command was introduced as of version 11.1.2
2.6.3.9 ENTRY <id> DEFAULT
Sets all parameters for a Stateful entry to their default values.
These are:
• PERMIT
• ADDRESS: 0.0.0.0/0
Syntax:
Stateful Access List #>entry <id> deny
2 Configuration
bintec elmeg
26
Access Control