Configuring an Application Protocol
The
application-protocolstatement allows you to specify which of the supported application protocols (ALGs) to configure and include in an application set for service processing. To configure application protocols, include theapplication-protocolstatement at the [edit applications applicationapplication-name] hierarchy level:application-protocolprotocol-name;Table 7 shows the list of supported protocols. For more information about specific protocols, see ALG Descriptions.
Supports BOOTP and dynamic host configuration protocol (DHCP).
Distributed Computing Environment (DCE) remote procedure call (RPC)
Requires the
protocolstatement to have the valueudportcp. Requires auuidvalue. You cannot specifydestination-portorsource-portvalues.Requires the
protocolstatement to have the valueudportcp. Requires adestination-portvalue.Requires the
protocolstatement to have the valueudp. This application protocol closes the DNS flow as soon as the DNS response is received.Requires the
protocolstatement to have the valuetcpor to be unspecified. Requires adestination-portvalue.Requires the
protocolstatement to have the valuetcpor to be unspecified. Requires adestination-portvalue.Requires the
protocolstatement to have the valuetcpor to be unspecified. Requires adestination-portvalue.Requires the
protocolstatement to have the valueicmpor to be unspecified.Internet Inter-ORB Protocol (IIOP) Transmission Control Protocol (TCP)
Requires the
protocolstatement to have the valuetcpor to be unspecified. Requires adestination-portvalue.Requires the
protocolstatement to have the valueudpor to be unspecified. Requires adestination-portvalue.Requires the
protocolstatement to have the valuetcpor to be unspecified. Requires adestination-portvalue.Requires the
protocolstatement to have the valuetcpor to be unspecified. Requires adestination-portvalue.Requires the
protocolstatement to have the valuetcpor to be unspecified. Requires adestination-portvalue.Remote Procedure Call (RPC) User Datagram Protocol (UDP) or TCP
Requires the
protocolstatement to have the valueudportcp. Requires arpc-program-numbervalue. You cannot specifydestination-portorsource-portvalues.Requires the
protocolstatement to have the valueudportcp. Requires adestination-portvalue.For more information, see Configuring SIP.
Requires the
protocolstatement to have the valuetcpor to be unspecified. Requires adestination-portvalue.Requires the
protocolstatement to have the valueudpor to be unspecified. Requires adestination-portvalue.Requires the
protocolstatement to have the valuetcpor to be unspecified. Requires adestination-portorsource-portvalue.Requires the
protocolstatement to have the valueudpor to be unspecified. Requires adestination-portvalue.Requires the
protocolstatement to have the valueudpor to be unspecified. Requires adestination-portvalue.Requires the
protocolstatement to have the valuetcpor to be unspecified. Requires adestination-portvalue.
NOTE: In the current release, you cannot configure application-level gateways (ALGs) under stateful firewall rules or CoS rules when twice NAT is configured in the same service set. Do not include the
application-protocol statement with theapplicationstatement for twice NAT configurations. When you configure one or more stateful firewall rules with an ALG in the same service set as a twice NAT configuration, the router ignores the ALG configuration. NAT applies only the IP address and TCP or UDP headers, but not the payload.For more information about configuring twice NAT, see Network Address Translation Services Configuration Guidelines.