<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco ASA use Sophos UTM IPS in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa-use-sophos-utm-ips/m-p/3382791#M958204</link>
    <description>Why wouldn't work?&lt;BR /&gt;It ALL depends of the design you're using to scan traffic already with your UTM appliances. Are you using some kind of "transparent mode" or you redirect traffic? Just add a network diagram for your setup.</description>
    <pubDate>Mon, 14 May 2018 13:21:42 GMT</pubDate>
    <dc:creator>Florin Barhala</dc:creator>
    <dc:date>2018-05-14T13:21:42Z</dc:date>
    <item>
      <title>Cisco ASA use Sophos UTM IPS</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-use-sophos-utm-ips/m-p/3382768#M958203</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;I am trying to understand if the ASA can use the IPS on the Sophos UTM 9.&lt;/P&gt;
&lt;P&gt;We have a pair of ASA 5585-X firewalls with IPS. I am in the process of looking to replace the IPS module with a firepower module.&lt;/P&gt;
&lt;P&gt;We also have a Sophos UTM 9 that does all the email and web filtering etc.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Am I able to utilize the IPS functionality of the Sophos UTM to work with the ASA?&lt;/P&gt;
&lt;P&gt;Not that I want to do that but its a question I just want to answer whether it can work&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:45:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-use-sophos-utm-ips/m-p/3382768#M958203</guid>
      <dc:creator>Mokhalil82</dc:creator>
      <dc:date>2020-02-21T15:45:58Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA use Sophos UTM IPS</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-use-sophos-utm-ips/m-p/3382791#M958204</link>
      <description>Why wouldn't work?&lt;BR /&gt;It ALL depends of the design you're using to scan traffic already with your UTM appliances. Are you using some kind of "transparent mode" or you redirect traffic? Just add a network diagram for your setup.</description>
      <pubDate>Mon, 14 May 2018 13:21:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-use-sophos-utm-ips/m-p/3382791#M958204</guid>
      <dc:creator>Florin Barhala</dc:creator>
      <dc:date>2018-05-14T13:21:42Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA use Sophos UTM IPS</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-use-sophos-utm-ips/m-p/3382851#M958223</link>
      <description>&lt;P&gt;I have just attached a diagram.&lt;/P&gt;
&lt;P&gt;The UTM sits alongside the ASA currently. The ASA does the IPSEC VPNs and the UTM does the SSL VPNs.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;All our web traffic currently uses the inside address of the UTM as the gateway (the computers have a client that talks to the sophos cloud web gateway which proxies the web traffic to the UTM first) and then sent out the inside interface to the ASA before leave the outside interface of the ASA.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So If in this case we want to utilize Sophos for the IPS, what is the best way to achieve this?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 14 May 2018 14:41:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-use-sophos-utm-ips/m-p/3382851#M958223</guid>
      <dc:creator>Mokhalil82</dc:creator>
      <dc:date>2018-05-14T14:41:34Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA use Sophos UTM IPS</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-use-sophos-utm-ips/m-p/3382895#M958228</link>
      <description>&lt;P&gt;I usually try to avoid designs where there are 2 default gateways possible and one of those is the ASA.&lt;BR /&gt;They may work at first, but after a while a request will come that can't be done because the ASA does not support icmp redirections and wants to see the going and return traffic.&lt;BR /&gt;Usually it's a better idea to have only one device as default gateway and the other one connected using a interconnect network.&lt;BR /&gt;I am not familiar with the Sophos UTM, but if it is a UTM it has the functions available on the ASA and plus some, so why still use the ASA in this case ?&lt;BR /&gt;If you want to offload the site to site VPNs to the ASA, I would use the UTM as default gateway and have a interconnect to the ASA so that vpn traffic still gets filtered by the UTM.&lt;BR /&gt;If you are planning to use both devices for filtering traffic, the acl based device (in this case the ASA) would be placed before and the IPS, because devices running IPS are more resource intensive.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;HTH&lt;/P&gt;
&lt;P&gt;Bogdan&lt;/P&gt;</description>
      <pubDate>Mon, 14 May 2018 15:31:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-use-sophos-utm-ips/m-p/3382895#M958228</guid>
      <dc:creator>Bogdan Nita</dc:creator>
      <dc:date>2018-05-14T15:31:36Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA use Sophos UTM IPS</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-use-sophos-utm-ips/m-p/3383507#M958229</link>
      <description>&lt;P&gt;I subscribe's to Bogdan's reply. I would preferably use transparent mode for UTM so you will be left with only "one default gateway".&lt;/P&gt;</description>
      <pubDate>Tue, 15 May 2018 13:55:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-use-sophos-utm-ips/m-p/3383507#M958229</guid>
      <dc:creator>Florin Barhala</dc:creator>
      <dc:date>2018-05-15T13:55:19Z</dc:date>
    </item>
  </channel>
</rss>

