<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic 2 Different Blocking Devices in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/2-different-blocking-devices/m-p/539255#M98510</link>
    <description>&lt;P&gt;Router--FW-DMZ-PIX--Interal Network&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a UDS 4215 to monitor all traffic to/from internal Network  &amp;amp; use PIX as blocking device&lt;/P&gt;&lt;P&gt;Now I would like to monitor all traffic in DMZ and use router as blokcing device&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;May I do that?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;            &lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 10:00:05 GMT</pubDate>
    <dc:creator>logintck</dc:creator>
    <dc:date>2019-03-10T10:00:05Z</dc:date>
    <item>
      <title>2 Different Blocking Devices</title>
      <link>https://community.cisco.com/t5/network-security/2-different-blocking-devices/m-p/539255#M98510</link>
      <description>&lt;P&gt;Router--FW-DMZ-PIX--Interal Network&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a UDS 4215 to monitor all traffic to/from internal Network  &amp;amp; use PIX as blocking device&lt;/P&gt;&lt;P&gt;Now I would like to monitor all traffic in DMZ and use router as blokcing device&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;May I do that?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;            &lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 10:00:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/2-different-blocking-devices/m-p/539255#M98510</guid>
      <dc:creator>logintck</dc:creator>
      <dc:date>2019-03-10T10:00:05Z</dc:date>
    </item>
    <item>
      <title>Re: 2 Different Blocking Devices</title>
      <link>https://community.cisco.com/t5/network-security/2-different-blocking-devices/m-p/539256#M98513</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi  ..  definetely  ...  with IPS you can use a PIX, Router and CAT 6500 as blocking devices.  Just locate the sensor in oine between the DMZ interface and the servers located on teh DMZ segment and configure the router as blocking device  !!!.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you can find info on this link&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps4077/products_configuration_guide_chapter09186a00803eb01e.html#wp1030293" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps4077/products_configuration_guide_chapter09186a00803eb01e.html#wp1030293&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps  .. please rate it it does !!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 May 2006 04:52:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/2-different-blocking-devices/m-p/539256#M98513</guid>
      <dc:creator>Fernando_Meza</dc:creator>
      <dc:date>2006-05-03T04:52:08Z</dc:date>
    </item>
    <item>
      <title>Re: 2 Different Blocking Devices</title>
      <link>https://community.cisco.com/t5/network-security/2-different-blocking-devices/m-p/539257#M98515</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;May I do this?&lt;/P&gt;&lt;P&gt;Using Router as block device to protect DMZ only&lt;/P&gt;&lt;P&gt;and&lt;/P&gt;&lt;P&gt;Using PIX as block device to protect Internal network only &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 May 2006 05:13:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/2-different-blocking-devices/m-p/539257#M98515</guid>
      <dc:creator>logintck</dc:creator>
      <dc:date>2006-05-03T05:13:10Z</dc:date>
    </item>
    <item>
      <title>Re: 2 Different Blocking Devices</title>
      <link>https://community.cisco.com/t5/network-security/2-different-blocking-devices/m-p/539258#M98516</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;logintck&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes you can.&lt;/P&gt;&lt;P&gt;You need to define two blocking profile in case the pix and router have diferent users names and password. If are the same, only one profile is necesary.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then define 2 blocking devices&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;At last define only the routing blocking device indicating name of interface, direction and pre and post ACL (optional)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The pix doesn't need to be defined as blocking device because the IPS use the shun command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope this help to you. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Alberto Giorgi from spain. (A new kid in this block)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 May 2006 21:11:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/2-different-blocking-devices/m-p/539258#M98516</guid>
      <dc:creator>a.giorgi</dc:creator>
      <dc:date>2006-05-03T21:11:02Z</dc:date>
    </item>
  </channel>
</rss>

