<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IPS capabilities of the 5510 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ips-capabilities-of-the-5510/m-p/1611625#M596470</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As you said you can enable connection limiting and SYN cookies. You can do it in 7.2, 8.0, 8.2 and 8.3.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also 8.x has the "threat-detection" feature that can block based on suspicious activity.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I want to also mention the Botnet filtering as also another feature that blocks bots.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;note that a 5510 can also take an AIP-SSM module that is an IPS that works in the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 20 Dec 2010 22:41:31 GMT</pubDate>
    <dc:creator>Panos Kampanakis</dc:creator>
    <dc:date>2010-12-20T22:41:31Z</dc:date>
    <item>
      <title>IPS capabilities of the 5510</title>
      <link>https://community.cisco.com/t5/network-security/ips-capabilities-of-the-5510/m-p/1611624#M596469</link>
      <description>&lt;P&gt;What if any IPS capabilities does the 5510 have&lt;/P&gt;&lt;P&gt;out of the box.&amp;nbsp; I know whe can set a limit on embryonic connections&lt;/P&gt;&lt;P&gt;if we upgrade the memory and run 8.3, right?&amp;nbsp; Is an accurate statement.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What if anything can be done to protect against DDOS attacks on the stock 5510?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks much!&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:25:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-capabilities-of-the-5510/m-p/1611624#M596469</guid>
      <dc:creator>w951duu</dc:creator>
      <dc:date>2019-03-11T19:25:02Z</dc:date>
    </item>
    <item>
      <title>Re: IPS capabilities of the 5510</title>
      <link>https://community.cisco.com/t5/network-security/ips-capabilities-of-the-5510/m-p/1611625#M596470</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As you said you can enable connection limiting and SYN cookies. You can do it in 7.2, 8.0, 8.2 and 8.3.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also 8.x has the "threat-detection" feature that can block based on suspicious activity.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I want to also mention the Botnet filtering as also another feature that blocks bots.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;note that a 5510 can also take an AIP-SSM module that is an IPS that works in the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Dec 2010 22:41:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-capabilities-of-the-5510/m-p/1611625#M596470</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2010-12-20T22:41:31Z</dc:date>
    </item>
    <item>
      <title>Re: IPS capabilities of the 5510</title>
      <link>https://community.cisco.com/t5/network-security/ips-capabilities-of-the-5510/m-p/1611626#M596471</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is an article about asa and DOS attacks:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a00809763ea.shtml"&gt;http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a00809763ea.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you can also add an aip-ssm module (intrustion prevention card) to do signature based intrusion detection/prevention. for more info:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6825/index.html"&gt;http://www.cisco.com/en/US/products/ps6825/index.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope this helps and answer your questions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Fadi.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Dec 2010 22:45:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-capabilities-of-the-5510/m-p/1611626#M596471</guid>
      <dc:creator>fadlouni</dc:creator>
      <dc:date>2010-12-20T22:45:57Z</dc:date>
    </item>
    <item>
      <title>Re: IPS capabilities of the 5510</title>
      <link>https://community.cisco.com/t5/network-security/ips-capabilities-of-the-5510/m-p/1611627#M596472</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes it helps very much, but could you elaborate on the threat detection feature in 8.3?  What types of threats will it detect.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also we need a minimum of 1gb of ram to run 8.3 on a 5510 correct?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Dec 2010 22:49:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-capabilities-of-the-5510/m-p/1611627#M596472</guid>
      <dc:creator>w951duu</dc:creator>
      <dc:date>2010-12-20T22:49:06Z</dc:date>
    </item>
    <item>
      <title>Re: IPS capabilities of the 5510</title>
      <link>https://community.cisco.com/t5/network-security/ips-capabilities-of-the-5510/m-p/1611628#M596473</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, you need memory for 8.3.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Threat detection runs on 8.0 and 8.2 also though. It can block based on multiple limits. It can block scanning attacks, dos, connection limits etc. Here is the guide that explains it &lt;A class="active_link" href="http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/protect.html"&gt;http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/protect.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let us know if it answers your question.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Dec 2010 23:59:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-capabilities-of-the-5510/m-p/1611628#M596473</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2010-12-20T23:59:36Z</dc:date>
    </item>
  </channel>
</rss>

