Hello Everyone,
I am going to be implementing an HA Cisco IPS appiiance using inline mode.
This is my diagram..
SWITCH 1 ----------------- SWITCH 2
| |
| |
| |
| |
Cisco IPS Cisco IPS
| |
| |
| |
| |
---------------------------------------------------------------------------------------
| |
| CISCO SWITCH |---------------------Another CISCO SWITCH
| | |
--------------------------------------------------------------------------------------- SERVER FARMS
|
SERVER FARMS
If there are multiple vlans on the switch connecting to the server farms, then the interface connecting the IPS to the CISCO SWITCH, will be like a mirrored port getting packets from all vlans in all interfaces. Otherwise how else will the IPS get packets from all the servers?
Thanks
Sid