<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Regarding deploying IPS in inline mode in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/regarding-deploying-ips-in-inline-mode/m-p/909293#M85080</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry, missed attaching the diagram.&lt;/P&gt;&lt;P&gt;Please find enclosed the diagram.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 17 Dec 2007 10:06:48 GMT</pubDate>
    <dc:creator>gautamzone</dc:creator>
    <dc:date>2007-12-17T10:06:48Z</dc:date>
    <item>
      <title>Regarding deploying IPS in inline mode</title>
      <link>https://community.cisco.com/t5/network-security/regarding-deploying-ips-in-inline-mode/m-p/909292#M85074</link>
      <description>&lt;P&gt;Dear friends&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just a query about operating IPS 4255 in inline mode. Currently, it is operating in promiscious mode. Now, i am planning to change to inline mode for just one segment (Internet vlan - 15) connecting the 4507 core switch 4507 and the 515 firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am planning to add another Layer 2 vlan viz. Vlan 16. The IPS can then act inline bridging traffic between vlan 16 and vlan 15.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have enclosed a diagram for your kind reference. As you will see, the firewall and core switch are still in the same Layer 3 subnet but the firewall is in vlan 16 and not in vlan 15. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is confusing me is the switch configuration for Switch A and B. I am not sure which ones are to be trunked and which ones are to be put in vlan 15 or 16. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This diagram just depicts the proposed plan. Can you let me know if this is correct. Any suggestion / feedback on this will really be appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks a lot&lt;/P&gt;&lt;P&gt;Gautam&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 10:54:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/regarding-deploying-ips-in-inline-mode/m-p/909292#M85074</guid>
      <dc:creator>gautamzone</dc:creator>
      <dc:date>2019-03-10T10:54:38Z</dc:date>
    </item>
    <item>
      <title>Re: Regarding deploying IPS in inline mode</title>
      <link>https://community.cisco.com/t5/network-security/regarding-deploying-ips-in-inline-mode/m-p/909293#M85080</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry, missed attaching the diagram.&lt;/P&gt;&lt;P&gt;Please find enclosed the diagram.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Dec 2007 10:06:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/regarding-deploying-ips-in-inline-mode/m-p/909293#M85080</guid>
      <dc:creator>gautamzone</dc:creator>
      <dc:date>2007-12-17T10:06:48Z</dc:date>
    </item>
    <item>
      <title>Re: Regarding deploying IPS in inline mode</title>
      <link>https://community.cisco.com/t5/network-security/regarding-deploying-ips-in-inline-mode/m-p/909294#M85085</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Why not use inline mode and a single VLAN? Why are you adding another VLAN?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-brad &lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.ccbootcamp.com" target="_blank"&gt;http://www.ccbootcamp.com&lt;/A&gt; &lt;/P&gt;&lt;P&gt;(please rate the post if this helps!) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Dec 2007 11:31:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/regarding-deploying-ips-in-inline-mode/m-p/909294#M85085</guid>
      <dc:creator>ccbootcamp</dc:creator>
      <dc:date>2007-12-17T11:31:09Z</dc:date>
    </item>
    <item>
      <title>Re: Regarding deploying IPS in inline mode</title>
      <link>https://community.cisco.com/t5/network-security/regarding-deploying-ips-in-inline-mode/m-p/909295#M85092</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks a lot Brad. But my understanding was that to put IPS in inline mode, you need to create another VLAN and use the IPS to bridge between both the Vlan's. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you shed more light on how do you achieve this with just one VLAN?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks a lot&lt;/P&gt;&lt;P&gt;Gautam&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Dec 2007 13:40:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/regarding-deploying-ips-in-inline-mode/m-p/909295#M85092</guid>
      <dc:creator>gautamzone</dc:creator>
      <dc:date>2007-12-20T13:40:48Z</dc:date>
    </item>
    <item>
      <title>Re: Regarding deploying IPS in inline mode</title>
      <link>https://community.cisco.com/t5/network-security/regarding-deploying-ips-in-inline-mode/m-p/909296#M85097</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;When you put an IDSM2 IPS in-line mode, use two VLANs. If you have a 4200 series sensor, use the same VLAN on both sides of the interfaces used as an in-line pair.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Jan 2008 01:45:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/regarding-deploying-ips-in-inline-mode/m-p/909296#M85097</guid>
      <dc:creator>mherald</dc:creator>
      <dc:date>2008-01-01T01:45:15Z</dc:date>
    </item>
  </channel>
</rss>

