cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
552
Views
0
Helpful
2
Replies

ASA with AIP-SSM in multiple context transparent mode. Possible?

ciscolexey
Level 1
Level 1

Hi, everyone.

Does anyone can help me with the following issue.

Currently I'm employed on project where I need to install ASA with AIP-SSM module in existing mid size network. One of option of how to implement this is to make several (2) contexts each of them in transparent mode and plug physical links to respective interfaces. So nothing expect to change from routing point of view and at the same time all traffic that traverse on that links will be firewalled and monitored by IPS module. So the question is that configuration possible? I mean are there any restrictions or limitations regarding multi context transparent mode and traffic inspection by IPS simultaneously?

Thanks in advance

2 Replies 2

ivillegas
Level 6
Level 6

I think ASA with AIP SSM supports multiple context transparent mode in software version 8.0. ASA 7.x working with IPS 6.0 on the SSM will work with a single virtual sensor on the SSM.

callevato
Level 1
Level 1

Hi ciscolexey.

Just wondering if you have already implemented the IPS module in transparent mode, because I did so but the IPS is blocking some kinds of protocol, like SMTP and ICMP, even if I put the IPS only in monitoring mode. Could you please inform me if there is any special configuration to do to put it in transparent mode?

Review Cisco Networking for a $25 gift card