<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Need to have a IDS/IPS system for LAN Users in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032062#M54504</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There are several ways to implement the IPS,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The question is do you want to have it inline or on promiscous mode?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If inline you could have it as an inline interface pair, inline vlan pair, inline vlan groups.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 23 Oct 2012 16:41:06 GMT</pubDate>
    <dc:creator>Julio Carvajal</dc:creator>
    <dc:date>2012-10-23T16:41:06Z</dc:date>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032057#M54497</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I need to have a IDS/IPS for my local users in my network. we have 3xcisco 6509 in access layer switch with 4 VLANS and I am looking for a system to detect activities like Port scan, IP scan and ,... in local network from the workstations.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please advise me.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;</description>
      <pubDate>Tue, 26 Mar 2019 00:20:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032057#M54497</guid>
      <dc:creator>littlespace</dc:creator>
      <dc:date>2019-03-26T00:20:34Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032058#M54499</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please check the following link so you can have a better understanding about the performance capacity of the IPS sensors.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Based on that you can choose the solution you can implement &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt; but that will depend on how many data traverse your network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Remember to rate all of the helpful posts&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2012 23:54:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032058#M54499</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-22T23:54:24Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032059#M54500</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I need to have 1Gbps IPS. I have checked Juniper IDP 800 and Cisco IPS 4360. which one is better?&lt;/P&gt;&lt;P&gt;any thought?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 03:12:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032059#M54500</guid>
      <dc:creator>littlespace</dc:creator>
      <dc:date>2012-10-23T03:12:37Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032060#M54501</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I forget to post the link.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here you go:&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5729/ps5713/ps4077/ps9157/product_data_sheet09186a008014873c_ps4077_Products_Data_Sheet.html"&gt;http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5729/ps5713/ps4077/ps9157/product_data_sheet09186a008014873c_ps4077_Products_Data_Sheet.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;IPS 4260 rocks man, I am used to work with the IPS sensors so I can tell you they will provide you as much granularity as you want &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;They support a way extended range of features that will provide a dynamic protection to your company,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Remember to rate all of the answers. that is as important as a thanks for the community.&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 16:07:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032060#M54501</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-23T16:07:58Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032061#M54502</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have 3x Cisco 6509 and 1 Internet Router. I am really confuse of putting the IPS device in between of those devices. &lt;/P&gt;&lt;P&gt;Should I connect each switch's uplinks directly to the IPS device and then from IPS to the other Switch?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please advise.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Thanks,&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 16:23:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032061#M54502</guid>
      <dc:creator>littlespace</dc:creator>
      <dc:date>2012-10-23T16:23:00Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032062#M54504</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There are several ways to implement the IPS,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The question is do you want to have it inline or on promiscous mode?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If inline you could have it as an inline interface pair, inline vlan pair, inline vlan groups.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 16:41:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032062#M54504</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-23T16:41:06Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032063#M54506</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am thinking of IDS mode with SPAN my VLAN traffics to the IPS/IDS device.&lt;/P&gt;&lt;P&gt;is it a good idea to SPAN the VLANs?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;like (config)#monitor session 1 source vlan 10&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 16:50:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032063#M54506</guid>
      <dc:creator>littlespace</dc:creator>
      <dc:date>2012-10-23T16:50:55Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032064#M54508</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Span vlans is good, no problem at all but I would recommend 100% to go for the IPS mode instead of IDS. Way more secure and restrictive,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 17:02:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032064#M54508</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-23T17:02:48Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032065#M54510</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;if I go with IPS mode and connect switch uplinks to the IPS then I can not monitor local VLAN traffic on each switch. becuse I do not have Core switch in the network and each vlan traffic will stay on the switches and will not pass the uplinks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 17:45:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032065#M54510</guid>
      <dc:creator>littlespace</dc:creator>
      <dc:date>2012-10-23T17:45:42Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032066#M54511</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No problem as you can SPAN the sessions on specific ports to the port going to the IPS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please check the configuration for each of the modes I presented before:&lt;/P&gt;&lt;P&gt;inline interface pair, inline vlan pair, inline vlan groups.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 17:47:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032066#M54511</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-23T17:47:36Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032067#M54512</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;can I span 3 vlan to 1 port which is connected to the IPS?&lt;/P&gt;&lt;P&gt;also I think I am going with Juniper IDP 800 becuse it is cheaper than cisco.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 17:52:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032067#M54512</guid>
      <dc:creator>littlespace</dc:creator>
      <dc:date>2012-10-23T17:52:15Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032068#M54514</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regarding one being cheaper than the other I cannot argue on that one &lt;SPAN __jive_emoticon_name="grin" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/grin.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now one will provide more features and protection than the other one but yes if you think that with the other IPS you will be good then you are set to go &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Last but not least here are some links I think will help you regarding the IPS deployment ( 3 vlans ---- Inline vlan group deployment)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A _jive_internal="true" href="https://community.cisco.com/message/3727610#3727610"&gt;https://supportforums.cisco.com/message/3727610#3727610&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://securiosity.blogspot.com/2011/01/cisco-ips-vlan-groups.html"&gt;http://securiosity.blogspot.com/2011/01/cisco-ips-vlan-groups.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/security/ips/6.1/configuration/guide/cli/cli_interfaces.html#wp1063187"&gt;http://www.cisco.com/en/US/docs/security/ips/6.1/configuration/guide/cli/cli_interfaces.html#wp1063187&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://popravak.wordpress.com/2012/03/30/cisco-ips-scenario-three-inline-vlan-pairs/"&gt;http://popravak.wordpress.com/2012/03/30/cisco-ips-scenario-three-inline-vlan-pairs/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 18:10:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032068#M54514</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-23T18:10:40Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032069#M54515</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You are awesome! Thanks for your help.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 19:09:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032069#M54515</guid>
      <dc:creator>littlespace</dc:creator>
      <dc:date>2012-10-23T19:09:54Z</dc:date>
    </item>
    <item>
      <title>Need to have a IDS/IPS system for LAN Users</title>
      <link>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032070#M54517</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Glad I could help &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have a great day ( thanks for the comments and rating &lt;SPAN __jive_emoticon_name="grin" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/grin.gif"&gt;&lt;/SPAN&gt; )&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 19:34:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-to-have-a-ids-ips-system-for-lan-users/m-p/2032070#M54517</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-23T19:34:46Z</dc:date>
    </item>
  </channel>
</rss>

