<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ISDM-2 configuration questions in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/isdm-2-configuration-questions/m-p/2199210#M54018</link>
    <description>&lt;P&gt;My client has an ISDM-2 blade in their 6504 chassis.&amp;nbsp; They want to scan the following traffic:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Internet traffic to server network&lt;/P&gt;&lt;P&gt;Student traffic to server network&lt;/P&gt;&lt;P&gt;Internet traffic to student networks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The current configuration uses VACL's to send the traffic to the IPS, but when I look at the IPS with the GUI, it says that port g0/7.0 is a promiscuous interface.&amp;nbsp; From what I read (this is my first go around with this blade), that when you are using VACL's, the IPS is in promiscous mode.&amp;nbsp; If that is the case, I would think I need to configure the 6504 to use inline mode.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is my situation/question.&amp;nbsp; The traffic fo the student network is on multiple vlans.&amp;nbsp; I see that I can configure a range on the following command:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;intrustion-detection module 4 data-port 2 access-vlan (vlan-range)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However, the student vlans are not in a continuous range (i.e. 20-30), they are broken up.&amp;nbsp; So what I am wondering is if I can have multiple of the above command (like below)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;intrustion-detection module 4 data-port 2 access-vlan 1-11&lt;/P&gt;&lt;P&gt;intrustion-detection module 4 data-port 2 access-vlan 20-22&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;intrustion-detection module 4 data-port 2 access-vlan 24&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;intrustion-detection module 4 data-port 2 access-vlan 28&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if this makes sense and if you have more questions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;TIA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Dan&lt;/P&gt;</description>
    <pubDate>Tue, 26 Mar 2019 00:20:41 GMT</pubDate>
    <dc:creator>deyster94</dc:creator>
    <dc:date>2019-03-26T00:20:41Z</dc:date>
    <item>
      <title>ISDM-2 configuration questions</title>
      <link>https://community.cisco.com/t5/network-security/isdm-2-configuration-questions/m-p/2199210#M54018</link>
      <description>&lt;P&gt;My client has an ISDM-2 blade in their 6504 chassis.&amp;nbsp; They want to scan the following traffic:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Internet traffic to server network&lt;/P&gt;&lt;P&gt;Student traffic to server network&lt;/P&gt;&lt;P&gt;Internet traffic to student networks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The current configuration uses VACL's to send the traffic to the IPS, but when I look at the IPS with the GUI, it says that port g0/7.0 is a promiscuous interface.&amp;nbsp; From what I read (this is my first go around with this blade), that when you are using VACL's, the IPS is in promiscous mode.&amp;nbsp; If that is the case, I would think I need to configure the 6504 to use inline mode.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is my situation/question.&amp;nbsp; The traffic fo the student network is on multiple vlans.&amp;nbsp; I see that I can configure a range on the following command:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;intrustion-detection module 4 data-port 2 access-vlan (vlan-range)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However, the student vlans are not in a continuous range (i.e. 20-30), they are broken up.&amp;nbsp; So what I am wondering is if I can have multiple of the above command (like below)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;intrustion-detection module 4 data-port 2 access-vlan 1-11&lt;/P&gt;&lt;P&gt;intrustion-detection module 4 data-port 2 access-vlan 20-22&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;intrustion-detection module 4 data-port 2 access-vlan 24&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;intrustion-detection module 4 data-port 2 access-vlan 28&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if this makes sense and if you have more questions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;TIA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Dan&lt;/P&gt;</description>
      <pubDate>Tue, 26 Mar 2019 00:20:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/isdm-2-configuration-questions/m-p/2199210#M54018</guid>
      <dc:creator>deyster94</dc:creator>
      <dc:date>2019-03-26T00:20:41Z</dc:date>
    </item>
    <item>
      <title>ISDM-2 configuration questions</title>
      <link>https://community.cisco.com/t5/network-security/isdm-2-configuration-questions/m-p/2199211#M54019</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Here is how you configure the blade to work in inline mode:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/ips/7.0/configuration/guide/cli/cli_idsm2.html#wp1187460"&gt;http://www.cisco.com/en/US/docs/security/ips/7.0/configuration/guide/cli/cli_idsm2.html#wp1187460&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And answering your second question, i can tell you that you can do what you are suggesting&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;intrustion-detection module 4 data-port 2 access-vlan 1-11&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;intrustion-detection module 4 data-port 2 access-vlan 20-22&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;intrustion-detection module 4 data-port 2 access-vlan 24&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;intrustion-detection module 4 data-port 2 access-vlan 28&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On routers, but i'm 90% sure you can do the same on the module.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Feb 2013 05:40:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/isdm-2-configuration-questions/m-p/2199211#M54019</guid>
      <dc:creator>jocamare</dc:creator>
      <dc:date>2013-02-27T05:40:01Z</dc:date>
    </item>
  </channel>
</rss>

