Cisco PIX 525 Especificaciones Pagina 354

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 604
  • Tabla de contenidos
  • SOLUCIÓN DE PROBLEMAS
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 353
21-28
Cisco Security Appliance Command Line Configuration Guide
OL-6721-01
Chapter 21 Applying Application Layer Protocol Inspection
Managing H.323 Inspection
Configuring H.225 Timeout Values
To configure the idle time after which an H.225 signalling connection is closed, enter the following
command:
hostname(config)# timeout h225
The default is 1:00:00.
To configure the idle time after which an H.323 control connection is closed, enter the following
command:
hostname(config)# timeout h323
The default is 0:05:00.
Verifying and Monitoring H.323 Inspection
This section describes how to display information about H.323 sessions. This section includes the
following topics:
Monitoring H.225 Sessions, page 21-28
Monitoring H.245 Sessions, page 21-29
Monitoring H.323 RAS Sessions, page 21-29
Monitoring H.225 Sessions
The show h225 command displays information for H.225 sessions established across the security
appliance. Along with the debug h323 h225 event, debug h323 h245 event, and show local-host
commands, this command is used for troubleshooting H.323 inspection engine issues.
Before entering the show h225, show h245, or show h323-ras commands, we recommend that you
configure the pager command. If there are a lot of session records and the pager command is not
configured, it may take a while for the show command output to reach its end. If there is an abnormally
large number of connections, check that the sessions are timing out based on the default timeout values
or the values set by you. If they are not, then there is a problem that needs to be investigated.
The following is sample output from the show h225 command:
hostname# show h225
Total H.323 Calls: 1
1 Concurrent Call(s) for
Local: 10.130.56.3/1040 Foreign: 172.30.254.203/1720
1. CRV 9861
Local: 10.130.56.3/1040 Foreign: 172.30.254.203/1720
0 Concurrent Call(s) for
Local: 10.130.56.4/1050 Foreign: 172.30.254.205/1720
This output indicates that there is currently 1 active H.323 call going through the security appliance
between the local endpoint 10.130.56.3 and foreign host 172.30.254.203, and for these particular
endpoints, there is 1 concurrent call between them, with a CRV for that call of 9861.
For the local endpoint 10.130.56.4 and foreign host 172.30.254.205, there are 0 concurrent calls. This
means that there is no active call between the endpoints even though the H.225 session still exists. This
could happen if, at the time of the show h225 command, the call has already ended but the H.225 session
has not yet been deleted. Alternately, it could mean that the two endpoints still have a TCP connection
Vista de pagina 353
1 2 ... 349 350 351 352 353 354 355 356 357 358 359 ... 603 604

Comentarios a estos manuales

Sin comentarios