<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IDSM-2 issues in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/idsm-2-issues/m-p/2046528#M54701</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ideally IPS should be behind the firewall, but depeds on your deployment scenario.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What kind of signature do you see firing on IDSM-2 ?&lt;/P&gt;&lt;P&gt;(Check via "show stats virtual-sensor")&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/quick_start/ips/ips_qsg.html"&gt;http://www.cisco.com/en/US/docs/security/asa/quick_start/ips/ips_qsg.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;"Traffic goes through the firewall checks before being forwarded to the IPS module."&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Sawan Gupta&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 01 Sep 2012 02:59:58 GMT</pubDate>
    <dc:creator>sawgupta</dc:creator>
    <dc:date>2012-09-01T02:59:58Z</dc:date>
    <item>
      <title>IDSM-2 issues</title>
      <link>https://community.cisco.com/t5/network-security/idsm-2-issues/m-p/2046527#M54700</link>
      <description>&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm having issues where the IDSM-2 is blocking internal users from accessing the internet.  When I run a report, I see TCP OVERWRITE errors on the PAT'd address of the firewall (FWSM). I have to reboot the IDSM-2 to get it working again...   I'm running the IDSM-2 "inline".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco is telling me that I should put the IDSM-2 behind the firewall but isn't that allowing bad traffic to hit the firewall?  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 12:45:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/idsm-2-issues/m-p/2046527#M54700</guid>
      <dc:creator>Garrison Botts</dc:creator>
      <dc:date>2019-03-10T12:45:54Z</dc:date>
    </item>
    <item>
      <title>IDSM-2 issues</title>
      <link>https://community.cisco.com/t5/network-security/idsm-2-issues/m-p/2046528#M54701</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ideally IPS should be behind the firewall, but depeds on your deployment scenario.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What kind of signature do you see firing on IDSM-2 ?&lt;/P&gt;&lt;P&gt;(Check via "show stats virtual-sensor")&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/quick_start/ips/ips_qsg.html"&gt;http://www.cisco.com/en/US/docs/security/asa/quick_start/ips/ips_qsg.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;"Traffic goes through the firewall checks before being forwarded to the IPS module."&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Sawan Gupta&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 01 Sep 2012 02:59:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/idsm-2-issues/m-p/2046528#M54701</guid>
      <dc:creator>sawgupta</dc:creator>
      <dc:date>2012-09-01T02:59:58Z</dc:date>
    </item>
    <item>
      <title>Re: IDSM-2 issues</title>
      <link>https://community.cisco.com/t5/network-security/idsm-2-issues/m-p/2046529#M54702</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;TCP Overwrite signature 1300/0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 01 Sep 2012 17:18:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/idsm-2-issues/m-p/2046529#M54702</guid>
      <dc:creator>Garrison Botts</dc:creator>
      <dc:date>2012-09-01T17:18:00Z</dc:date>
    </item>
  </channel>
</rss>

