<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to best use IDSM in promiscuous mode? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/how-to-best-use-idsm-in-promiscuous-mode/m-p/894623#M85695</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm on 6.0  I don't remember if 5.x did inline vlan pairs.  &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 21 Sep 2007 14:21:03 GMT</pubDate>
    <dc:creator>gmherring</dc:creator>
    <dc:date>2007-09-21T14:21:03Z</dc:date>
    <item>
      <title>How to best use IDSM in promiscuous mode?</title>
      <link>https://community.cisco.com/t5/network-security/how-to-best-use-idsm-in-promiscuous-mode/m-p/894620#M85692</link>
      <description>&lt;P&gt;Hi folks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I need some input and ideas how to best set up my IDSM2 module.&lt;/P&gt;&lt;P&gt;Today I have the module set up to capture traffic from the 6513 using SPAN in both directions and two different firewalled VLANs as sources. The destination is data-port 1 on the IDSM. This setup is working fine but I'm curious as how to best use the second data-port. Our 6513 runs IOS 12.2(18)SXF3 and has a limit of only one SPAN session set up to capture an entire VLAN in both directions.&lt;/P&gt;&lt;P&gt;My idea was to use the second data-port as SPAN destination for our external/non-firewalled VLAN, but this isn't allowed.&lt;/P&gt;&lt;P&gt;Does anyone have or had a similar problem? Would using a VLAN access list with data-port 2 as destination be an option or are the dual IDSM interfaces mainly used for inline mode?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Fredrik Hofgren&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 10:48:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-best-use-idsm-in-promiscuous-mode/m-p/894620#M85692</guid>
      <dc:creator>hoffa2000</dc:creator>
      <dc:date>2019-03-10T10:48:05Z</dc:date>
    </item>
    <item>
      <title>Re: How to best use IDSM in promiscuous mode?</title>
      <link>https://community.cisco.com/t5/network-security/how-to-best-use-idsm-in-promiscuous-mode/m-p/894621#M85693</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Fredrik,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am using VACLs in the switch that has the IDSM.  This will preserve your SPAN sessions.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can specify which vlans go to which port on the IDSM.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We actually have our external vlan set up as an inline vlan pair on data port 2.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Sep 2007 13:13:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-best-use-idsm-in-promiscuous-mode/m-p/894621#M85693</guid>
      <dc:creator>gmherring</dc:creator>
      <dc:date>2007-09-21T13:13:45Z</dc:date>
    </item>
    <item>
      <title>Re: How to best use IDSM in promiscuous mode?</title>
      <link>https://community.cisco.com/t5/network-security/how-to-best-use-idsm-in-promiscuous-mode/m-p/894622#M85694</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Excellent&lt;/P&gt;&lt;P&gt;Might have a go at that idea with inline vlan pair for the external vlan. You using version 5.1 for the IDSM?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Sep 2007 14:17:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-best-use-idsm-in-promiscuous-mode/m-p/894622#M85694</guid>
      <dc:creator>hoffa2000</dc:creator>
      <dc:date>2007-09-21T14:17:36Z</dc:date>
    </item>
    <item>
      <title>Re: How to best use IDSM in promiscuous mode?</title>
      <link>https://community.cisco.com/t5/network-security/how-to-best-use-idsm-in-promiscuous-mode/m-p/894623#M85695</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm on 6.0  I don't remember if 5.x did inline vlan pairs.  &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Sep 2007 14:21:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-best-use-idsm-in-promiscuous-mode/m-p/894623#M85695</guid>
      <dc:creator>gmherring</dc:creator>
      <dc:date>2007-09-21T14:21:03Z</dc:date>
    </item>
    <item>
      <title>Re: How to best use IDSM in promiscuous mode?</title>
      <link>https://community.cisco.com/t5/network-security/how-to-best-use-idsm-in-promiscuous-mode/m-p/894624#M85696</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It does. Will try it next week&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Sep 2007 14:24:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-best-use-idsm-in-promiscuous-mode/m-p/894624#M85696</guid>
      <dc:creator>hoffa2000</dc:creator>
      <dc:date>2007-09-21T14:24:43Z</dc:date>
    </item>
  </channel>
</rss>

