To enable or disable ICAP blocking mode on a appliance using the CLI, use the [no] icap-service block-mode enable command.
Prerequisites
Administrator access to the Network Security appliance
The ICAP service is enabled on the appliance. For details, see Enabling or disabling the ICAP service.
Go to CLI configuration mode.
hostname > enable hostname # configure terminal
Enable ICAP blocking mode on the appliance.
hostname (config) # icap-service block-mode enable
Verify the status of ICAP blocking mode.
hostname (config) # show icap-service config ICAP Configuration: ICAP enabled : yes Interface : ether1 Request Mod Enabled : yes Response Mod Enabled : yes Block-mode Enabled : yes Response-page Enabled : yes . . .
The "Block-mode Enabled" line displays "yes" if blocking mode is enabled for the ICAP service.
Save your changes.
hostname (config) # write memory
Go to CLI configuration mode.
hostname > enable hostname # configure terminal
Disable ICAP blocking mode on the appliance.
hostname (config) # no icap-service block-mode enable
Verify the status of ICAP blocking mode.
hostname (config) # show icap-service config ICAP Configuration: ICAP enabled : yes Interface : ether1 Request Mod Enabled : yes Response Mod Enabled : yes Block-mode Enabled : no Response-page Enabled : yes . . .
The "Block-mode Enabled" line displays "no" if blocking mode is disabled for the ICAP service.
Save your changes.
hostname (config) # write memory