<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Using IDSM with FWSM in multiple context in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172358#M77854</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes you can.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In promiscous mode you tap the required traffic (All fwsm context Vlans) at Switch and copy that traffic to IDSM.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Syed&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 26 Jan 2009 20:27:53 GMT</pubDate>
    <dc:creator>Syed Iftekhar Ahmed</dc:creator>
    <dc:date>2009-01-26T20:27:53Z</dc:date>
    <item>
      <title>Using IDSM with FWSM in multiple context</title>
      <link>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172357#M77853</link>
      <description>&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would like to know whether it is possible to use IDSM across two distinct contexts in FWSM. &lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 11:28:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172357#M77853</guid>
      <dc:creator>cisco_lite</dc:creator>
      <dc:date>2019-03-10T11:28:40Z</dc:date>
    </item>
    <item>
      <title>Re: Using IDSM with FWSM in multiple context</title>
      <link>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172358#M77854</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes you can.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In promiscous mode you tap the required traffic (All fwsm context Vlans) at Switch and copy that traffic to IDSM.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Syed&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 26 Jan 2009 20:27:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172358#M77854</guid>
      <dc:creator>Syed Iftekhar Ahmed</dc:creator>
      <dc:date>2009-01-26T20:27:53Z</dc:date>
    </item>
    <item>
      <title>Re: Using IDSM with FWSM in multiple context</title>
      <link>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172359#M77855</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks Syed. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I were to use inline mode, when there are distinct active contexts across two FWSMs; will it be possible. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 26 Jan 2009 20:40:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172359#M77855</guid>
      <dc:creator>cisco_lite</dc:creator>
      <dc:date>2009-01-26T20:40:36Z</dc:date>
    </item>
    <item>
      <title>Re: Using IDSM with FWSM in multiple context</title>
      <link>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172360#M77856</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes you can.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can configure IDSM-2 in inline VLAN pair mode. IDSM-2 performs VLAN bridging between pairs of VLANs within the same data port operating as an 802.1q trunk.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;IDSM-2 has two data ports (sensing ports).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can configure IDSM-2 to simultaneously bridge up to 255 VLAN pairs on each data port.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So with two sensing ports you can have 2 x 255 &lt;/P&gt;&lt;P&gt;inline vlan pairs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(Obviously its not recommended to have so many vlan pairs. Remember that IDSM throughput is hardly 500Mbps and it can easily become a bottleneck in front of FWSM which has much higher throughput)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Syed&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 26 Jan 2009 22:35:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172360#M77856</guid>
      <dc:creator>Syed Iftekhar Ahmed</dc:creator>
      <dc:date>2009-01-26T22:35:54Z</dc:date>
    </item>
    <item>
      <title>Re: Using IDSM with FWSM in multiple context</title>
      <link>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172361#M77857</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Once more for clarity. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Lets say contextA is active on FWSM1 placed in Cat6500(1) and contextB is active on FWSM2 placed in Cat6500(2). IDSM(1) is installed on Cat6500(1) and IDSM(2) is installed on Cat6500(2). &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can both the active contexts on different FWSM be inspected by the IDSM simultaneously. Which IDSM shall inspect which FWSM. Is it 1 to 1 and 2 to 2.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 26 Jan 2009 23:26:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172361#M77857</guid>
      <dc:creator>cisco_lite</dc:creator>
      <dc:date>2009-01-26T23:26:31Z</dc:date>
    </item>
    <item>
      <title>Re: Using IDSM with FWSM in multiple context</title>
      <link>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172362#M77858</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Unlike FWSM/ACE where you could have one FWSM active &amp;amp; other standby, In IDSM there are no such states.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You will have to extend all FWSM &amp;amp; IDSM vlans over trunk between two switches and then configure STP (Spanning tree protocol)such taht it will make one path in forwarding mode and other in Blocking mode.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For example if context1 is active in SW1 &amp;amp; standby  in SW2. Then STP will ensure that link b/w Active context1 (of SW1) &amp;amp; IDSM(of SW1) is in forwarding state &amp;amp; link between  b/w stdby context1 (of SW2) &amp;amp; IDSM(of SW2) is in blocking state.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Syed&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 27 Jan 2009 01:04:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172362#M77858</guid>
      <dc:creator>Syed Iftekhar Ahmed</dc:creator>
      <dc:date>2009-01-27T01:04:51Z</dc:date>
    </item>
    <item>
      <title>Re: Using IDSM with FWSM in multiple context</title>
      <link>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172363#M77859</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Would you be able to provide a short example of extending FWSM/IDSM vlans over the trunk and configuring STP where different active contexts reside on both the FWSMs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 27 Jan 2009 16:03:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/using-idsm-with-fwsm-in-multiple-context/m-p/1172363#M77859</guid>
      <dc:creator>cisco_lite</dc:creator>
      <dc:date>2009-01-27T16:03:57Z</dc:date>
    </item>
  </channel>
</rss>

