<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IPS/IDS design que in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ips-ids-design-que/m-p/1960571#M55186</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG src="https://community.cisco.com/legacyfs/online/legacy/9/0/2/90209-IPS%20IDS.jpg" alt="IPS IDS.jpg" class="jive-image-thumbnail jive-image" onclick="" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Design Description:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;We have a 6500 series switch where my ISP Point-to-Point link got terminated. Where we have configured OSPF on the 6500 series switch to have all the roots from ISP.&lt;BR /&gt;&lt;/LI&gt;&lt;LI&gt;We are getting 3 numbers of /24 public IP subnet Pool for my servers from ISP. I have configured SVI in 6500 series switch for all my server segment.&lt;BR /&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;we have 2 number of 4260 IPS appliance having 4G ports connected to 6500 series switch.&lt;BR /&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Requirement:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;1. I need to implement IPS functionality to 2 of my Public IP server segment (i.e. X.X.X.X/24 and Y.Y.Y.Y/24)&lt;BR /&gt;&lt;/LI&gt;&lt;LI&gt;2. Need IDS functionality for 3&lt;SUP&gt;rd&lt;/SUP&gt; server Segment. (i.e. Z.Z.Z.Z/24)&lt;BR /&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So Please suggest how can I achieve my goal. Where exactly I need to put my IPS box to have In-line and promiscuous for IPS and IDS server segment? Also suggest what are the configuration changes required.&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 12:41:20 GMT</pubDate>
    <dc:creator>pandapritam</dc:creator>
    <dc:date>2019-03-10T12:41:20Z</dc:date>
    <item>
      <title>IPS/IDS design que</title>
      <link>https://community.cisco.com/t5/network-security/ips-ids-design-que/m-p/1960571#M55186</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG src="https://community.cisco.com/legacyfs/online/legacy/9/0/2/90209-IPS%20IDS.jpg" alt="IPS IDS.jpg" class="jive-image-thumbnail jive-image" onclick="" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Design Description:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;We have a 6500 series switch where my ISP Point-to-Point link got terminated. Where we have configured OSPF on the 6500 series switch to have all the roots from ISP.&lt;BR /&gt;&lt;/LI&gt;&lt;LI&gt;We are getting 3 numbers of /24 public IP subnet Pool for my servers from ISP. I have configured SVI in 6500 series switch for all my server segment.&lt;BR /&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;we have 2 number of 4260 IPS appliance having 4G ports connected to 6500 series switch.&lt;BR /&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Requirement:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;1. I need to implement IPS functionality to 2 of my Public IP server segment (i.e. X.X.X.X/24 and Y.Y.Y.Y/24)&lt;BR /&gt;&lt;/LI&gt;&lt;LI&gt;2. Need IDS functionality for 3&lt;SUP&gt;rd&lt;/SUP&gt; server Segment. (i.e. Z.Z.Z.Z/24)&lt;BR /&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So Please suggest how can I achieve my goal. Where exactly I need to put my IPS box to have In-line and promiscuous for IPS and IDS server segment? Also suggest what are the configuration changes required.&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 12:41:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-ids-design-que/m-p/1960571#M55186</guid>
      <dc:creator>pandapritam</dc:creator>
      <dc:date>2019-03-10T12:41:20Z</dc:date>
    </item>
    <item>
      <title>IPS/IDS design que</title>
      <link>https://community.cisco.com/t5/network-security/ips-ids-design-que/m-p/1960572#M55187</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You could look at implementing an Inline VLAN Pair configuration for the two segments that you need to provide IPS functionality.&amp;nbsp; This could be done using a single gigabit trunk from the 4260 to the 6500 or you could look at EtherChannel Load Balancing multiple links to provide for bandwidth aggregation and redundancy.&amp;nbsp; Inline VLAN pairing will require you to add additional VLANs to the design as highlighted in the document below.&amp;nbsp; The 4260 will then perform VLAN bridging between pairs of VLANs on the configured trunk.&amp;nbsp; For the IDS requirement, you could configure an additional interface on the 4260 in promiscuous mode and then redirect traffic from the specific source VLAN using a SPAN or VACL on the 6500.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/customer/docs/security/ips/7.0/configuration/guide/cli/cli_interfaces.html#wp1047718"&gt;http://www.cisco.com/en/US/customer/docs/security/ips/7.0/configuration/guide/cli/cli_interfaces.html#wp1047718&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 May 2012 21:30:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-ids-design-que/m-p/1960572#M55187</guid>
      <dc:creator>Todd Pula</dc:creator>
      <dc:date>2012-05-30T21:30:00Z</dc:date>
    </item>
  </channel>
</rss>

