<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Validate PIX &amp; IPS Network Design in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/validate-pix-ips-network-design/m-p/511684#M98787</link>
    <description>&lt;P&gt;Attached is my network design of the PIX and the IPS in promiscuous mode (non-inline).  It doesn't look sound:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1.  Is it possible to set up the IPS in non-inline mode with two sensors?  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2.  Can the IPS direct blocking commands to the PIX through the Desktop Management console?  If not, do I need to place an internal switch for the desktop console and the command/control interfaces of the PIX and IPS?&lt;/P&gt;&lt;P&gt;3.  Other comments/suggestions?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 09:52:22 GMT</pubDate>
    <dc:creator>vxnguyen</dc:creator>
    <dc:date>2019-03-10T09:52:22Z</dc:date>
    <item>
      <title>Validate PIX &amp; IPS Network Design</title>
      <link>https://community.cisco.com/t5/network-security/validate-pix-ips-network-design/m-p/511684#M98787</link>
      <description>&lt;P&gt;Attached is my network design of the PIX and the IPS in promiscuous mode (non-inline).  It doesn't look sound:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1.  Is it possible to set up the IPS in non-inline mode with two sensors?  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2.  Can the IPS direct blocking commands to the PIX through the Desktop Management console?  If not, do I need to place an internal switch for the desktop console and the command/control interfaces of the PIX and IPS?&lt;/P&gt;&lt;P&gt;3.  Other comments/suggestions?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 09:52:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/validate-pix-ips-network-design/m-p/511684#M98787</guid>
      <dc:creator>vxnguyen</dc:creator>
      <dc:date>2019-03-10T09:52:22Z</dc:date>
    </item>
    <item>
      <title>Re: Validate PIX &amp; IPS Network Design</title>
      <link>https://community.cisco.com/t5/network-security/validate-pix-ips-network-design/m-p/511685#M98788</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Cisco IPS Version 5.0 Sensor can be configured either in the IPS (inline) mode or the promiscuous IDS mode. If your sensor already has more than one monitoring interface, no additional hardware is required to run Cisco IPS Sensor Software Version 5.0 in the IPS (inline) mode. IPS services require at least one monitoring interface pair (two monitoring interfaces). Cisco provides the option of upgrading sensors with a single monitoring interface to support multiple monitoring interfaces. For more information on the various IDS and IPS sensor platforms and part numbers, please refer to Cisco IPS 4200 Series Data Sheet located at: &lt;A class="jive-link-custom" href="http://www.cisco.com/go/ips" target="_blank"&gt;http://www.cisco.com/go/ips&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps4077/products_qanda_item0900aecd801e6a99.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps4077/products_qanda_item0900aecd801e6a99.shtml&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Feb 2006 20:50:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/validate-pix-ips-network-design/m-p/511685#M98788</guid>
      <dc:creator>b.hsu</dc:creator>
      <dc:date>2006-02-03T20:50:20Z</dc:date>
    </item>
    <item>
      <title>Re: Validate PIX &amp; IPS Network Design</title>
      <link>https://community.cisco.com/t5/network-security/validate-pix-ips-network-design/m-p/511686#M98789</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks.  Here is my question restated:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can the IPS 4255 be configured with more than 1 sensor interface in promiscuous mode.  In other words, can I configure one IPS device with two or three sensor interfaces in Promiscuous mode (not inline).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 04 Feb 2006 08:53:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/validate-pix-ips-network-design/m-p/511686#M98789</guid>
      <dc:creator>vxnguyen</dc:creator>
      <dc:date>2006-02-04T08:53:57Z</dc:date>
    </item>
    <item>
      <title>Re: Validate PIX &amp; IPS Network Design</title>
      <link>https://community.cisco.com/t5/network-security/validate-pix-ips-network-design/m-p/511687#M98790</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the response. I understand a monitoring or sensing interface pair is required for IPS 4255 services in inline mode.  In promisuous mode, can the Cisco IPS 4255 operate with just one monitoring interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 09 Feb 2006 05:54:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/validate-pix-ips-network-design/m-p/511687#M98790</guid>
      <dc:creator>vxnguyen</dc:creator>
      <dc:date>2006-02-09T05:54:13Z</dc:date>
    </item>
  </channel>
</rss>

