12-22-2014 02:56 AM - edited 03-10-2019 06:18 AM
Hi,
I am new to IPS,
I have configured IPS in "in-line open" mode.
Current IPS IOS version is 7.1(8)E4 and the Signature version on IPS is 836.
Firewall model 5520 and the IPS model no is IPS-SSM-20.
I am using cisco IPS express manager 7.2 to monitor my IPS.
Unfortunately we are not getting any event like,
- Top Victim
- Top Attacker
- Top Signatures etc.
and also not able to generate any reports for the same.
We are able to see traffic on the interface of IPS continuously increasing.
12-26-2014 04:32 AM
Someone please reply
01-05-2015 08:44 AM
Hi Ray;
Have you gone through this document?
http://www.cisco.com/c/en/us/support/docs/security/ips-4200-series-sensors/111659-ips-email-ime-config.html
On the show service policy from the firewall, are you able to see packet input/output?
Let us know.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide