<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IPS SENCORS ALLOCATIONS in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ips-sencors-allocations/m-p/1309211#M68271</link>
    <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please Expert , examine the attached digaram and tell if you do agree with my interfaces allocation of the dedicate IPS 4215,looks like one is the C&amp;amp;C on the Inside,&lt;/P&gt;&lt;P&gt;in order to lanch the IDM mangment, and the other 2 sensors interfaces looks lile one sensing on the outside and one sensing on the DMZ along with the inline mode &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;to fully protect the the I-BANKING and the SMS server,so plz advise me for the optimum and Robust design that is switable to my attached topology&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Waitng ur kind response&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 11:49:30 GMT</pubDate>
    <dc:creator>alsayed</dc:creator>
    <dc:date>2019-03-10T11:49:30Z</dc:date>
    <item>
      <title>IPS SENCORS ALLOCATIONS</title>
      <link>https://community.cisco.com/t5/network-security/ips-sencors-allocations/m-p/1309211#M68271</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please Expert , examine the attached digaram and tell if you do agree with my interfaces allocation of the dedicate IPS 4215,looks like one is the C&amp;amp;C on the Inside,&lt;/P&gt;&lt;P&gt;in order to lanch the IDM mangment, and the other 2 sensors interfaces looks lile one sensing on the outside and one sensing on the DMZ along with the inline mode &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;to fully protect the the I-BANKING and the SMS server,so plz advise me for the optimum and Robust design that is switable to my attached topology&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Waitng ur kind response&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 11:49:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-sencors-allocations/m-p/1309211#M68271</guid>
      <dc:creator>alsayed</dc:creator>
      <dc:date>2019-03-10T11:49:30Z</dc:date>
    </item>
    <item>
      <title>Re: IPS SENCORS ALLOCATIONS</title>
      <link>https://community.cisco.com/t5/network-security/ips-sencors-allocations/m-p/1309212#M68273</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To have best protection you should be in inline mode and the design would&amp;nbsp; depend on whether you have vlan on your DMZ or not.&lt;/P&gt;&lt;P&gt;Do you have Vlan in your DMZ segment ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Nov 2009 20:38:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-sencors-allocations/m-p/1309212#M68273</guid>
      <dc:creator>Amadou TOURE</dc:creator>
      <dc:date>2009-11-25T20:38:02Z</dc:date>
    </item>
    <item>
      <title>Re: IPS SENCORS ALLOCATIONS</title>
      <link>https://community.cisco.com/t5/network-security/ips-sencors-allocations/m-p/1309213#M68276</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hello&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;yes i have vlan for DMZ&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Nov 2009 18:46:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-sencors-allocations/m-p/1309213#M68276</guid>
      <dc:creator>alsayed</dc:creator>
      <dc:date>2009-11-30T18:46:57Z</dc:date>
    </item>
    <item>
      <title>Re: IPS SENCORS ALLOCATIONS</title>
      <link>https://community.cisco.com/t5/network-security/ips-sencors-allocations/m-p/1309214#M68277</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;after a quick verification on Cisco Website, it seems that the 4215 is end-of-life and sales so it would be better to upgrade the hardware before putting in production a device which will face a lack of support.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In regards to the design you have two options in my view :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. INLINE MODE with inline vlan pair or vlan group in the case where your servers are in different vlan in DMZ&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. PROMISCUOUS MODE with shun depending of the type of router or switch that you have&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I added promiscuous mode in regards to your statement about availability.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In regard to your environment the options for availability are :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. hardware and/or software bypass, I'm not so sure if the harware bypass card is supported by the 4215 device&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. install a second IPS or use a cable between the switches where IPS is connected. In this case you'll need spanning-tree configuration on ports&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm not convinced about about the efficiency of the sensing link outside the network, may be for anomaly detection purposes ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Nov 2009 21:08:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-sencors-allocations/m-p/1309214#M68277</guid>
      <dc:creator>Amadou TOURE</dc:creator>
      <dc:date>2009-11-30T21:08:57Z</dc:date>
    </item>
  </channel>
</rss>

