Enables or disables Internet Content Adaptation Protocol (ICAP) service blocking mode on the Network Security appliance. The ICAP service blocking mode is disabled by default.
Note
Enabling ICAP service does not automatically enable ICAP blocking mode.
When ICAP service blocking mode is enabled, detection of a potential threat in a REQMOD or RESPMOD request from an ICAP client causes the Network Security appliance―acting as an ICAP server―to block the requested data. If the ICAP service blocking mode comfort page is enabled, the appliance serves the client browser a static HTTP comfort page. For details, see “Configuring Threat Management” in the Network Security User Guide.
Syntax
[no] icap-service block-mode enable
Parameters
no
Disables ICAP service blocking mode.
Examples
The following example enables the ICAP service blocking mode.
hostname (config) # icap-service block-mode enable
The following example disables the ICAP service blocking mode.
hostname (config) # no icap-service block-mode enable
User role
Admin
Command mode
Config
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Network Security: Release 9.0