<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IPS 4200 sensors behind Cisco PIX in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ips-4200-sensors-behind-cisco-pix/m-p/712435#M88227</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Agree, it's far better option (I overlooked at the two ipsboxes).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 27 Nov 2006 09:40:00 GMT</pubDate>
    <dc:creator>a.kiprawih</dc:creator>
    <dc:date>2006-11-27T09:40:00Z</dc:date>
    <item>
      <title>IPS 4200 sensors behind Cisco PIX</title>
      <link>https://community.cisco.com/t5/network-security/ips-4200-sensors-behind-cisco-pix/m-p/712431#M88219</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've two Cisco PIX firewalls configured as failover pair in active/passive fashion. I want to deploy two IPS 4235 inline mode sensors behind those firewalls.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What would be the connectivity looks like?! &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I know that there is a layer 2 switch must exists to terminate all the devices legs on it. what else should be performed in addition configuring the inline pair?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please advise.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thx&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Turbo&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 10:20:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-4200-sensors-behind-cisco-pix/m-p/712431#M88219</guid>
      <dc:creator>turbo_engine26</dc:creator>
      <dc:date>2019-03-10T10:20:30Z</dc:date>
    </item>
    <item>
      <title>Re: IPS 4200 sensors behind Cisco PIX</title>
      <link>https://community.cisco.com/t5/network-security/ips-4200-sensors-behind-cisco-pix/m-p/712432#M88221</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It depends. It will be easier if you have dedicated hub/switch to use, or a switch with enought ports to host L2 Vlans for Outside and Inside segments to be protected by IPS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;With dedicated hub/switch:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Router &amp;lt;-&amp;gt; IPS Pair#1 &amp;lt;-&amp;gt; outside:PIX (Active &amp;amp; Standby):inside &amp;lt;-&amp;gt; IPS Pair#2 &amp;lt;-&amp;gt; internal network&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;IPS Pair#1: port 1 to Router, port2 to hub&lt;/P&gt;&lt;P&gt;IPS Pair#2: port 3 to Router, port4 to hub&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For single switch to host both IPS inline pairs:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://forum.cisco.com/eforum/servlet/NetProf?page=netprof&amp;amp;forum=Security&amp;amp;topic=Intrusion%20Prevention%20Systems/IDS&amp;amp;CommCmd=MB%3Fcmd%3Ddisplay_location%26location%3D.1ddcd38e" target="_blank"&gt;http://forum.cisco.com/eforum/servlet/NetProf?page=netprof&amp;amp;forum=Security&amp;amp;topic=Intrusion%20Prevention%20Systems/IDS&amp;amp;CommCmd=MB%3Fcmd%3Ddisplay_location%26location%3D.1ddcd38e&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However, eventhough you have redundant firewall, bear in mind that using single switch can be a single point of failure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;AK&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 26 Nov 2006 19:10:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-4200-sensors-behind-cisco-pix/m-p/712432#M88221</guid>
      <dc:creator>a.kiprawih</dc:creator>
      <dc:date>2006-11-26T19:10:40Z</dc:date>
    </item>
    <item>
      <title>Re: IPS 4200 sensors behind Cisco PIX</title>
      <link>https://community.cisco.com/t5/network-security/ips-4200-sensors-behind-cisco-pix/m-p/712433#M88223</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;BTW, the 2xIPS in the diagram is only a logical separation based on inline pair for Outside and Inside firewall segments. Physically, it's still a single box.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 26 Nov 2006 19:13:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-4200-sensors-behind-cisco-pix/m-p/712433#M88223</guid>
      <dc:creator>a.kiprawih</dc:creator>
      <dc:date>2006-11-26T19:13:03Z</dc:date>
    </item>
    <item>
      <title>Re: IPS 4200 sensors behind Cisco PIX</title>
      <link>https://community.cisco.com/t5/network-security/ips-4200-sensors-behind-cisco-pix/m-p/712434#M88225</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi  ..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;would not be better to use the second IPS as redundant by connecting it between the Core and the Inside interface of the Firewalls instead of using one IPS on the outside to monitor packets which could be dropped by the ASAs anyway ..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;just a thought  !!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Nov 2006 02:24:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-4200-sensors-behind-cisco-pix/m-p/712434#M88225</guid>
      <dc:creator>Fernando_Meza</dc:creator>
      <dc:date>2006-11-27T02:24:14Z</dc:date>
    </item>
    <item>
      <title>Re: IPS 4200 sensors behind Cisco PIX</title>
      <link>https://community.cisco.com/t5/network-security/ips-4200-sensors-behind-cisco-pix/m-p/712435#M88227</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Agree, it's far better option (I overlooked at the two ipsboxes).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Nov 2006 09:40:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-4200-sensors-behind-cisco-pix/m-p/712435#M88227</guid>
      <dc:creator>a.kiprawih</dc:creator>
      <dc:date>2006-11-27T09:40:00Z</dc:date>
    </item>
  </channel>
</rss>

