show icap-service config

Prev Next

Displays the status and configuration settings for the Internet Content Adaptation Protocol (ICAP) service.

For details about how to integrate ICAP, see the "Configuring Threat Management" chapter of the Network Security User Guide.

Syntax

show icap-service config

Parameters

None

Output fields

The following table describes the output fields for the show icap-service config command. Fields are listed in the approximate order in which they appear in the output.

Field

Description

ICAP enabled

ICAP service is disabled by default. Use the icap-service enable command to enable the service.

Interface

Traffic sent over ICAP is received on the ether1 or ether2 management interface.

Request Mod Enabled

Whether the request modification mode (REQMOD) is enabled or disabled.

Response Mod Enabled

Whether the response modification mode (REQMOD) is enabled or disabled.

TCP port

TCP port that is used for traffic sent over ICAP. By default, the ICAP server listens for traffic on port 1344.

Secure port

TCP port that is used to establish a secure ICAP connection between the Network Security appliance and the ICAP client. By default, the secure ICAP connection is on port 11344.

Secure Certificate

SSL certificate that is submitted by the ICAP server to connect to ICAP clients over secure ICAP connections. By default, the system-self-signed certificate is used to establish secure communication.

Max Connection

Maximum number of simultaneous connections allowed on the Network Security appliance acting as an ICAP server.

Example

The following example displays the status and configuration settings for the ICAP service.

hostname # show icap-service
ICAP Configuration:
  ICAP enabled             :  yes
  Interface                :  ether2
  Request Mod Enabled      :  yes
  Response Mod Enabled     :  yes
  TCP port                 :  1344
  Secure port              :  11344
  Secure Certificate       :  system-self-signed
  Max Connection           :  25

User role

Admin, Operator, Monitor, or Analyst

Command mode

Enable

Supported appliances

This command is supported on the following appliance running the specified release or later:

  • Network Security: Release 8.3