<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic LAN-IDSM2 Inline in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/lan-idsm2-inline/m-p/1578404#M66315</link>
    <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If a LAN-IDSM2 installed on a main swx&amp;nbsp; 6500 as a IDS, can we switch it to be inline as an IPS?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;how can we know if this IDSM can support the throuput? and how can we know what is the curent throuput passing through this LAN-IDSM2 in order to take a decision about it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;best regards,&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 12:09:37 GMT</pubDate>
    <dc:creator>learnsec</dc:creator>
    <dc:date>2019-03-10T12:09:37Z</dc:date>
    <item>
      <title>LAN-IDSM2 Inline</title>
      <link>https://community.cisco.com/t5/network-security/lan-idsm2-inline/m-p/1578404#M66315</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If a LAN-IDSM2 installed on a main swx&amp;nbsp; 6500 as a IDS, can we switch it to be inline as an IPS?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;how can we know if this IDSM can support the throuput? and how can we know what is the curent throuput passing through this LAN-IDSM2 in order to take a decision about it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;best regards,&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 12:09:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/lan-idsm2-inline/m-p/1578404#M66315</guid>
      <dc:creator>learnsec</dc:creator>
      <dc:date>2019-03-10T12:09:37Z</dc:date>
    </item>
    <item>
      <title>Re: LAN-IDSM2 Inline</title>
      <link>https://community.cisco.com/t5/network-security/lan-idsm2-inline/m-p/1578405#M66318</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes IDSM can be inline device.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regarding throughput, it's best to do a test.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I beleive a single IDSM can do 500Mbit/s (Marketing numbers, actual performance will depend on features enabled etc etc) via ECLB you can take up to 4 devices to provide up to 2Gbit/s throughput (if traffic is load balanced properly).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you want to check current load, you can check either stats in IDSM itself or if you want traffic statistics:&lt;/P&gt;&lt;P&gt;show intrusion modu {NUM} data-port {1|2} traffic&lt;/P&gt;&lt;P&gt;example result:&lt;BR /&gt;Intrusion-detection module 7 data-port 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Specified interface is up line protocol is up (connected)&lt;BR /&gt;&amp;nbsp; Hardware is C6k 1000Mb 802.3, address is 0012.4374.290c (bia 0012.4374.290c)&lt;BR /&gt;&amp;nbsp; MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec,&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; reliability 255/255, txload 1/255, rxload 1/255&lt;BR /&gt;&amp;nbsp; Encapsulation ARPA, loopback not set&lt;BR /&gt;&amp;nbsp; Keepalive set (10 sec)&lt;BR /&gt;&amp;nbsp; Full-duplex, 1000Mb/s&lt;BR /&gt;&amp;nbsp; input flow-control is off, output flow-control is unsupported&lt;BR /&gt;&amp;nbsp; Last input never, output 00:00:44, output hang never&lt;BR /&gt;&amp;nbsp; Last clearing of "show interface" counters never&lt;BR /&gt;&amp;nbsp; Input queue: 0/2000/0/0 (size/max/drops/flushes); Total output drops: 0&lt;BR /&gt;&amp;nbsp; Queueing strategy: fifo&lt;BR /&gt;&amp;nbsp; Output queue: 0/40 (size/max)&lt;BR /&gt;&amp;nbsp; 5 minute input rate 0 bits/sec, 0 packets/sec&lt;BR /&gt;&amp;nbsp; 5 minute output rate 0 bits/sec, 0 packets/sec&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2 packets input, 164 bytes, 0 no buffer&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Received 1 broadcasts, 0 runts, 0 giants, 0 throttles&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 input packets with dribble condition detected&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 188437 packets output, 89695206 bytes, 0 underruns&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 output errors, 0 collisions, 2 interface resets&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 babbles, 0 late collision, 0 deferred&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 lost carrier, 0 no carrier&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 output buffer failures, 0 output buffers swapped out&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 23 Oct 2010 10:01:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/lan-idsm2-inline/m-p/1578405#M66318</guid>
      <dc:creator>Marcin Latosiewicz</dc:creator>
      <dc:date>2010-10-23T10:01:35Z</dc:date>
    </item>
  </channel>
</rss>

