Paul This depends on the internal priority of inspection engines implemented on the ASA which is something you cannot modify. I think 8.2 conf guide has a table showing you the exact order.
Regards, -- Piotr Kaluzny CCIE #25665 (Security), CCSP, CCNP Sr. Technical Instructor - IPexpert, Inc. URL: http://www.IPexpert.com On Mon, Jun 24, 2013 at 7:27 PM, Paul Siwecki <[email protected]> wrote: > Hi Guys,**** > > ** ** > > Does anyone know how the inspection would behave in these two examples:*** > * > > ** ** > > 1.**** > > ** ** > > class-map ANY1 > match any > class-map ANY2 > match any > > policy-map OUT > class ANY1 > inspect ftp > class ANY2 > inspect esmtp > > service-policy OUT interface outside**** > > ** ** > > 2.**** > > ** ** > > class-map tcp21a > match port tcp 21 > class-map tcp21b > match port tcp 21 > > policy-map OUT > class tcp21a > inspect esmtp > class tcp21b > inspect ftp > > service-policy OUT interface outside**** > > ** ** > > ** ** > > I was going through the configuration guide already but it is still > unclear for me.**** > > ** ** > > ** ** > > Cheers,**** > > ** ** > > Paul**** > > ** ** > > _______________________________________________ > For more information regarding industry leading CCIE Lab training, please > visit www.ipexpert.com > > Are you a CCNP or CCIE and looking for a job? Check out > www.PlatinumPlacement.com >
_______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com Are you a CCNP or CCIE and looking for a job? Check out www.PlatinumPlacement.com
