icap-service block-mode enable

Prev Next

Enables or disables Internet Content Adaptation Protocol (ICAP) service blocking mode on the Network Security appliance. The ICAP service blocking mode is disabled by default.

Note

Enabling ICAP service does not automatically enable ICAP blocking mode.

When ICAP service blocking mode is enabled, detection of a potential threat in a REQMOD or RESPMOD request from an ICAP client causes the Network Security appliance―acting as an ICAP server―to block the requested data. If the ICAP service blocking mode comfort page is enabled, the appliance serves the client browser a static HTTP comfort page. For details, see “Configuring Threat Management” in the Network Security User Guide.

Syntax

[no] icap-service block-mode enable

Parameters

no

Disables ICAP service blocking mode.

Examples

The following example enables the ICAP service blocking mode.

hostname (config) # icap-service block-mode enable

The following example disables the ICAP service blocking mode.

hostname (config) # no icap-service block-mode enable

User role

Admin

Command mode

Config

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Network Security: Release 9.0