<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic AIM-IPS-K9 with 2811 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062987#M78218</link>
    <description>&lt;P&gt;Good day,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am trying to find config. example to enable inline monitoring on the AIM card.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;AIM-IPS-K9 with 2811&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, I would like to bypass all the VoIP traffic from traversing the AIM card. I think this can be accomplished with an access list on the Gig interface of the AIM card.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Having some issues finding info. on AIM cards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 11:23:55 GMT</pubDate>
    <dc:creator>cmhcsecurity</dc:creator>
    <dc:date>2019-03-10T11:23:55Z</dc:date>
    <item>
      <title>AIM-IPS-K9 with 2811</title>
      <link>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062987#M78218</link>
      <description>&lt;P&gt;Good day,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am trying to find config. example to enable inline monitoring on the AIM card.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;AIM-IPS-K9 with 2811&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, I would like to bypass all the VoIP traffic from traversing the AIM card. I think this can be accomplished with an access list on the Gig interface of the AIM card.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Having some issues finding info. on AIM cards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 11:23:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062987#M78218</guid>
      <dc:creator>cmhcsecurity</dc:creator>
      <dc:date>2019-03-10T11:23:55Z</dc:date>
    </item>
    <item>
      <title>Re: AIM-IPS-K9 with 2811</title>
      <link>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062988#M78220</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;WAN interface=""&gt; &lt;/WAN&gt;&lt;/P&gt;&lt;P&gt; ids-service-module monitoring inline access-list myacl&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I actually use this command on the data sub-interface (and that bypasses voip --although there are voip specific signatures --) .  I did have some problems in a few tests I ran trying to use the IPS inline and use and ACL, so please let me know your results.&lt;/P&gt;&lt;P&gt;Complete Interface Example:&lt;/P&gt;&lt;P&gt;interface FastEthernet0/0.90&lt;/P&gt;&lt;P&gt; description DATA&lt;/P&gt;&lt;P&gt; encapsulation dot1Q 90 native&lt;/P&gt;&lt;P&gt; ip address 10.5.90.1 255.255.255.0&lt;/P&gt;&lt;P&gt; ip helper-address 172.17.5.20&lt;/P&gt;&lt;P&gt; ids-service-module monitoring inline&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Dec 2008 16:35:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062988#M78220</guid>
      <dc:creator>mdreelan</dc:creator>
      <dc:date>2008-12-01T16:35:21Z</dc:date>
    </item>
    <item>
      <title>Re: AIM-IPS-K9 with 2811</title>
      <link>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062989#M78221</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;FYI:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/docs/security/ips/6.2/configuration/guide/cli/cli_aim.html#wp1044942" target="_blank"&gt;http://www.cisco.com/en/US/docs/security/ips/6.2/configuration/guide/cli/cli_aim.html#wp1044942&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Roberto Taccon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Dec 2008 08:50:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062989#M78221</guid>
      <dc:creator>ROBERTO TACCON</dc:creator>
      <dc:date>2008-12-16T08:50:31Z</dc:date>
    </item>
    <item>
      <title>Re: AIM-IPS-K9 with 2811</title>
      <link>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062990#M78222</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;May I ask you the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- what happens to inline traffic when you exceed the declared throughput ? Is traffic dropped or is it forwarded without IPS inspection ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Dec 2008 08:57:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062990#M78222</guid>
      <dc:creator>ROBERTO TACCON</dc:creator>
      <dc:date>2008-12-16T08:57:49Z</dc:date>
    </item>
    <item>
      <title>Re: AIM-IPS-K9 with 2811</title>
      <link>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062991#M78223</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Traffic that doesn't get analyzed by the sensor because of exceeding throughput will be dropped.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I see that you are using an AIM-IPS-K9.&lt;/P&gt;&lt;P&gt;If you think you will be near the performance limits of the AIM, then you might consider purchasing an NME instead which has higher performance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You might also consider analyzing the type of traffic going through your router and see if you want to permit some of the traffic through without being analyzed by the AIM.&lt;/P&gt;&lt;P&gt;You can create an access-list to permit that traffic you do not want analyzed and the router will route it through without sending it to the AIM.  Simply create the access-list and add the access-list to the end of the ids-service-module command:&lt;/P&gt;&lt;P&gt;ids-service-module monitoring inline access-list 101&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Dec 2008 16:22:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062991#M78223</guid>
      <dc:creator>marcabal</dc:creator>
      <dc:date>2008-12-16T16:22:33Z</dc:date>
    </item>
    <item>
      <title>Re: AIM-IPS-K9 with 2811</title>
      <link>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062992#M78224</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thansk in advance for the reply.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can't find an answer to the following q:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Need to know the performance about the Cisco router 28XX.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In particular I've found on cisco web site for the Cisco router 2821 the following info:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Firewall performance : 208 Mbps&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5708/ps5710/ps1018/C78-345384-04_CiscoIntegratedFirewallSolutions.html" target="_blank"&gt;http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5708/ps5710/ps1018/C78-345384-04_CiscoIntegratedFirewallSolutions.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Routing PPS (64 Byte): 170,000 (87.04 Mbps)&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/web/partners/tools/quickreference/index.html" target="_blank"&gt;http://www.cisco.com/web/partners/tools/quickreference/index.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you help me cause I can't understand why the firewall performance are better than the routing performance ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance, best regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Dec 2008 16:42:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/aim-ips-k9-with-2811/m-p/1062992#M78224</guid>
      <dc:creator>ROBERTO TACCON</dc:creator>
      <dc:date>2008-12-16T16:42:54Z</dc:date>
    </item>
  </channel>
</rss>

