<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IPS Design in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ips-design/m-p/981951#M79588</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We are desinging a new network.  In this network we placed 2 cisco asa 5510 as first line of defense firewalls.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My question is, i received a request to place an ips in this design.  Is it advisable to place an AIM in the cisco 5510 or do i need an new asa 5510 with aim and configure it as an ips device?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How do it connect it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jorg&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 11:10:35 GMT</pubDate>
    <dc:creator>jorg.ramakers</dc:creator>
    <dc:date>2019-03-10T11:10:35Z</dc:date>
    <item>
      <title>IPS Design</title>
      <link>https://community.cisco.com/t5/network-security/ips-design/m-p/981951#M79588</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We are desinging a new network.  In this network we placed 2 cisco asa 5510 as first line of defense firewalls.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My question is, i received a request to place an ips in this design.  Is it advisable to place an AIM in the cisco 5510 or do i need an new asa 5510 with aim and configure it as an ips device?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How do it connect it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jorg&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 11:10:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-design/m-p/981951#M79588</guid>
      <dc:creator>jorg.ramakers</dc:creator>
      <dc:date>2019-03-10T11:10:35Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Design</title>
      <link>https://community.cisco.com/t5/network-security/ips-design/m-p/981952#M79589</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I don't see a need to get a third asa with the module.  If I am correct, the modules for ASA give you a choice of what kind of extra functionality you want out of that device.  Just like a router.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You will connect to the ASA as you normally would and manage the IPS within it.  If you are using ADM it should show up as another configuration optioin.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Jul 2008 13:15:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-design/m-p/981952#M79589</guid>
      <dc:creator>ben.gordon</dc:creator>
      <dc:date>2008-07-02T13:15:30Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Design</title>
      <link>https://community.cisco.com/t5/network-security/ips-design/m-p/981953#M79590</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That is correct.  If i'm using the modules for the ASA it is impossible to configure it as an inband device only out of band, or not?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What are the major (dis)advantages for inband or out of band?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jorg&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Jul 2008 13:25:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-design/m-p/981953#M79590</guid>
      <dc:creator>jorg.ramakers</dc:creator>
      <dc:date>2008-07-02T13:25:22Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Design</title>
      <link>https://community.cisco.com/t5/network-security/ips-design/m-p/981954#M79591</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Jorg -&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The AIP-SSM module can be either placed in-line (all the ASA traffic has to pass thought it) or in promiscuous mode (when it only sniffs the traffic and can perfrom shuns not drops). The disadvantage of placing your AIP-SSM module in line is that any sensor issue becomes service effecting. The disadvantage of placing it in promiscuous mode is that you can't drop single packet attacks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Jul 2008 14:50:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-design/m-p/981954#M79591</guid>
      <dc:creator>rhermes</dc:creator>
      <dc:date>2008-07-02T14:50:37Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Design</title>
      <link>https://community.cisco.com/t5/network-security/ips-design/m-p/981955#M79592</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Jorg,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would advise to use another vendor for the IPS piece. Depending on environment you might want to put the NIP's in front of or in back of your firewalls.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco rules the switch and router world.&lt;/P&gt;&lt;P&gt;They do an okay job with their firewalls.&lt;/P&gt;&lt;P&gt;But need some work in the IPS world.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My environment has 3-5 firewall vendors and 2-3 IPS vendors. Strength in layers&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 11 Jul 2008 14:17:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-design/m-p/981955#M79592</guid>
      <dc:creator>TradeSecrets</dc:creator>
      <dc:date>2008-07-11T14:17:10Z</dc:date>
    </item>
  </channel>
</rss>

